DSA-2025-164: Security Update for Dell VxFlex Ready Node and PowerFlex Custom Node Multiple Third-Party Component Vulnerabilities

Resumen: Dell VxFlex Ready Node and PowerFlex Custom Node remediation is available for multiple security vulnerabilities that could be exploited by malicious users to compromise the affected system. ...

Este artículo se aplica a Este artículo no se aplica a Este artículo no está vinculado a ningún producto específico. No se identifican todas las versiones del producto en este artículo.

Impacto

High

Detalles

Third-party Component

CVEs

More Information

Dell PowerEdge Server BIOS

CVE-2024-21853, CVE-2024-21944, CVE-2024-27457, CVE-2023-31342, CVE-2023-31343, CVE-2023-31345, CVE-2024-21924, CVE-2024-21925, CVE-2023-20582, CVE-2023-20581

DSA-2024-383, DSA-2024-404, DSA-2024-385, DSA-2025-085

iDRAC

CVE-2023-52340, CVE-2024-42154

DSA-2024-460

Intel Adapters 

CVE-2024-24852, CVE-2024-36274

DSA-2025-042

 

Dell Technologies recomienda que todos los clientes tengan en cuenta tanto la puntuación base como cualquier otra puntuación ambiental y temporal relevante que pueda afectar la posible gravedad asociada con la vulnerabilidad de seguridad en particular.

Corrección y productos afectados

Product

Software/Firmware

Affected Versions

Remediated Versions

Link

VxFlex Ready Node

Dell PowerEdge BIOS –14G R640, R740, R840

 

Versions prior to 2.22.2

Version 2.22.2 or later

Downloads (in case of upgrade using OME)

PowerFlex Custom Node

Dell PowerEdge BIOS –15G R650 and R750

Versions prior to 1.15.2

Version 1.15.2 or later

Downloads (in case of upgrade using OME)

PowerFlex Custom Node

Dell PowerEdge BIOS –15G AMD R6525

Versions prior to 2.17.4

Version 2.17.4 or later

Downloads (in case of upgrade using OME)

PowerFlex Custom Node

Dell PowerEdge BIOS –16G R660 and R760

Versions prior to 2.4.4

Version 2.4.4 or later

Downloads (in case of upgrade using OME)

PowerFlex Custom Node

Dell PowerEdge BIOS –16G AMD R6625 and R7625

Versions prior to 1.10.6

Version 1.10.6 or later

Downloads (in case of upgrade using OME)

 

Product

Software/Firmware

Affected Versions

Remediated Versions

Link

VxFlex Ready Node

Dell PowerEdge BIOS –14G R640, R740, R840

 

Versions prior to 2.22.2

Version 2.22.2 or later

Downloads (in case of upgrade using OME)

PowerFlex Custom Node

Dell PowerEdge BIOS –15G R650 and R750

Versions prior to 1.15.2

Version 1.15.2 or later

Downloads (in case of upgrade using OME)

PowerFlex Custom Node

Dell PowerEdge BIOS –15G AMD R6525

Versions prior to 2.17.4

Version 2.17.4 or later

Downloads (in case of upgrade using OME)

PowerFlex Custom Node

Dell PowerEdge BIOS –16G R660 and R760

Versions prior to 2.4.4

Version 2.4.4 or later

Downloads (in case of upgrade using OME)

PowerFlex Custom Node

Dell PowerEdge BIOS –16G AMD R6625 and R7625

Versions prior to 1.10.6

Version 1.10.6 or later

Downloads (in case of upgrade using OME)

 

In the case of manual upgrade for VxFlex Ready Note, please see this link: https://www.dell.com/support/home/en-us/product-support/product/scaleio-ready-node--poweredge-14g/docs

In the case of manual upgrade for PowerFlex custom node, please see this link: https://www.dell.com/support/home/product-support/product/powerflex-custom-node/docs

Historial de revisiones

Revision

Date

Description

1.0

2024-04-03

Initial Release

 

Información relacionada

Productos afectados

VxFlex Ready Nodes, PowerFlex custom node, ScaleIO, PowerFlex custom node, PowerFlex custom node R650, PowerFlex custom node R6525, PowerFlex custom node R660, PowerFlex custom node R6625, PowerFlex custom node R750, PowerFlex custom node R760 , PowerFlex custom node R7625, PowerFlex custom node R860, VxFlex Ready Node, VxFlex Ready Node R640, VxFlex Ready Node R740xd, VxFlex Ready Node R840 ...
Propiedades del artículo
Número del artículo: 000303519
Tipo de artículo: Dell Security Advisory
Última modificación: 03 abr 2025
Encuentre respuestas a sus preguntas de otros usuarios de Dell
Servicios de soporte
Compruebe si el dispositivo está cubierto por los servicios de soporte.