DSA-2024-495: Security Update for OpenManage Enterprise Modular (OME-M) Vulnerabilities
Summary: Dell OpenManage Enterprise (OME-M) remediation is available for multiple security vulnerabilities that could be exploited by malicious users to compromise the affected system.
Impact
Critical
Details
| Third-party Component |
CVEs |
More Information |
| Apache HTTP Server |
CVE-2024-38475, CVE-2024-38473, CVE-2024-38472, CVE-2024-39573, CVE-2024-38477, CVE-2024-38476, CVE-2024-38474, CVE-2023-38709 |
See NVD link below for individual scores for each CVE. |
| go / BSAFE Go |
CVE-2024-24790 |
See NVD link below for individual scores for each CVE. |
Affected Products & Remediation
| Product |
Software/Firmware |
Affected Versions |
Remediated Versions |
Link |
| OpenManage Enterprise Modular |
Firmware |
Versions prior to 2.20.10 |
Version 2.20.10 |
OpenManage Enterprise Modular v2.20.10 | Driver Details | Dell US |
| Product |
Software/Firmware |
Affected Versions |
Remediated Versions |
Link |
| OpenManage Enterprise Modular |
Firmware |
Versions prior to 2.20.10 |
Version 2.20.10 |
OpenManage Enterprise Modular v2.20.10 | Driver Details | Dell US |
Revision History
|
Revision |
Date |
Description |
|
1.0 |
2024-12-16 |
Initial Release |
|
2.0 |
2024-12-18 |
Added CVE-2024-24790 to the Third-party Component list |