DSN-2020-003: Dell response to the Ripple20 vulnerabilities

Resumen: Dell response to the Ripple20 vulnerabilities.

Este artículo se aplica a: Este artículo no se aplica a: Este artículo no está vinculado a ningún producto específico. En este artículo no se identifican todas las versiones de los productos.

Tipo de artículo sobre seguridad

Security KB

Identificador CVE

CVE-2020-11896, CVE-2020-11897, CVE-2020-11898, CVE-2020-11899, CVE-2020-11900, CVE-2020-11901, CVE-2020-11902, CVE-2020-11903, CVE-2020-11904, CVE-2020-11905, CVE-2020-11906, CVE-2020-11907, CVE-2020-11908, CVE-2020-11909, CVE-2020-11910, CVE-2020-11911, CVE-2020-11912, CVE-2020-11913, CVE-2020-11914

Resumen del problema

Dell is aware of the Treck, Inc vulnerabilities referred to as "Ripple20." The security of our products is critical to help ensure our customers’ data and systems are protected. We are working to understand possible impact. If impacted, security updates or mitigations will be communicated at https://www.dell.com/support/security as they become available and will be linked into this notice.

See the following resources for additional information regarding the impact of these vulnerabilities on Dell and Dell EMC products.

https://www.dell.com/support/kbdoc/000132873 Treck, Inc vulnerabilities referred to as "Ripple20."

Detalles

Dell and Dell EMC security advisories and impact statements

Dell EMC Servers
Dell EMC Servers are not impacted by the vulnerabilities existing in the Treck TCP/IP Stack referred to as "Ripple20".

Dell Client Platforms
Dell has released updates for multiple vulnerabilities existing in the Treck TCP/IP Stack referred to as "Ripple20" in an Intel component (INTEL-SA-00295) used within Dell Client Platforms. Customers can review the Dell Security AdvisorDSA-2020-143 for affected products, versions and additional information.

Dell has released updates for multiple vulnerabilities existing in the Treck TCP/IP Stack referred to as "Ripple20" in Teradici firmware and remote workstation cards used within Dell Precision platforms and Dell Wyse Zero Client products. Customers can review the Dell Security Advisory DSA-2020-150  for affected products, versions and additional information.

We encourage customers to update their systems to the latest firmware versions as soon as possible. If we discover any other products are impacted, we will communicate security updates or mitigations here as they become available.
 
Dell EMC Data Protection
Dell EMC Data Protection products are not impacted by the vulnerabilities existing in the Treck TCP/IP stack referred to as "Ripple20".

Dell EMC Networking
Dell EMC Networking products are not impacted by the vulnerabilities existing in the Treck TCP/IP Stack referred to as "Ripple20".

Dell EMC Storage 
Dell has released updates for multiple vulnerabilities existing in the Treck TCP/IP Stack referred to as "Ripple20 " affecting Dell EMC PowerFlex Rack products. Customers can review the Dell Security DSA-2020-264 for affected products, versions and additional information.

Dell Converged Infrastructure and Hyperconverged Infrastructure
Dell has released updates for multiple vulnerabilities existing in the Treck TCP/IP Stack referred to as "Ripple20 " affecting Dell Converged Infrastructure and Hyperconverged Infrastructure products:

Recomendaciones

.Refer to the Details section.

Productos afectados

Product Security Information
Propiedades del artículo
Número de artículo: 000181000
Tipo de artículo: Security KB
Última modificación: 18 sept 2025
Versión:  6
Encuentra las respuestas que necesitas con la ayuda de otros usuarios de Dell
Servicios de asistencia
Comprueba si tu dispositivo está cubierto por los servicios de asistencia.