DSA-2026-245: Security Update for Dell VxRail for Multiple Third-Party Component Vulnerabilities

Resumen: Dell VxRail remediation is available for multiple security vulnerabilities that could be exploited by malicious users to compromise the affected system.

Este artículo se aplica a Este artículo no se aplica a Este artículo no está vinculado a ningún producto específico. No se identifican todas las versiones del producto en este artículo.

Impacto

High

Detalles

Third-party Component CVEs More Information
Linux Kernel CVE-2026-31431 https://nvd.nist.gov/vuln/search This hyperlink is taking you to a website outside of Dell Technologies. 

 

Dell Technologies recomienda que todos los clientes tengan en cuenta tanto la puntuación base como cualquier otra puntuación ambiental y temporal relevante que pueda afectar la posible gravedad asociada con la vulnerabilidad de seguridad en particular.

Corrección y productos afectados

CVEs Addressed Product Affected Versions Remediated Versions Link
CVE-2026-31431 Dell VxRail Appliance Versions prior to 8.0.390

Version 8.0.390 or later

 

Customers are encouraged to follow mitigation steps below until remediation has been released.

Target Availability:
June 2026

 

CVEs Addressed Product Affected Versions Remediated Versions Link
CVE-2026-31431 Dell VxRail Appliance Versions prior to 8.0.390

Version 8.0.390 or later

 

Customers are encouraged to follow mitigation steps below until remediation has been released.

Target Availability:
June 2026

 

Soluciones alternativas y mitigaciones

CVE ID Workaround and Mitigation
CVE-2026-31431

For customers who need to mitigate the vulnerability before upgrading, Dell recommends blacklisting the algif_aead kernel module.

Steps to Apply the Workaround:

  1. SSH into the VxRail Manager as root.
  2. Run the following commands to blacklist the module and unload it if currently loaded:

echo "install algif_aead /bin/false" > /etc/modprobe.d/disable-algif-aead.conf
rmmod algif_aead 2>/dev/null

  1. Verify the workaround is in effect:

modprobe algif_aead

This command should fail (module load denied).

lsmod | grep algif_aead

This should return empty (module not loaded).

Notes on the workaround:

  • The install algif_aead /bin/false directive redirects any module load request to /bin/false, effectively denying the load.
  • The blacklist configuration file (/etc/modprobe.d/disable-algif-aead.conf) is not overwritten by kernel package updates and will persist across VxRail LCM upgrades.
  • Disabling algif_aead will not affect: OS boot/shutdown/reboot, kernel updates, network services (SSH, HTTP, DNS), IPsec VPN, disk encryption (dm-crypt/LUKS), container runtime (Docker/containerd), any VxRail Manager functions, or vCenter operations.

Removing the Workaround After Upgrade

After upgrading to VxRail 8.0.390 or later, Dell strongly recommends removing the blacklist configuration to ensure compatibility with potential future enhancements:

rm -f /etc/modprobe.d/disable-algif-aead.conf

 

Historial de revisiones

RevisionDateDescription
1.02026-06-05Initial Release

 

Información relacionada

Productos afectados

VxRail, VxRail 460 and 470 Nodes, VxRail Appliance Series, VxRail D Series Nodes, VxRail D560, VxRail D560F, VxRail E Series Nodes, VxRail E460, VxRail E560, VxRail E560 VCF

Productos

VxRail G Series Nodes, VxRail E560F, VxRail E560F VCF, VxRail E560N, VxRail E560N VCF, VxRail E660, VxRail E660F, VxRail E660N, VxRail E665, VxRail E665F, VxRail E665N, VxRail G560, VxRail G560 VCF, VxRail G560F, VxRail G560F VCF , VxRail P Series Nodes, VxRail P470, VxRail P570, VxRail P570 VCF, VxRail P570F, VxRail P570F VCF, VxRail P580N, VxRail P580N VCF, VxRail P670F, VxRail P670N, VxRail P675F, VxRail P675N, VxRail S Series Nodes, VxRail S470, VxRail S570, VxRail S570 VCF, VxRail S670, VxRail V Series Nodes, VxRail V470, VxRail V570, VxRail V570 VCF, VxRail V570F, VxRail V570F VCF, VXRAIL V670F, VxRail VD-4000R, VxRail VD-4000W, VxRail VD-4000Z, VxRail VD-4510C, VxRail VD-4520C, VxRail VD Series Nodes, VxRail VE-660, VxRail VE-6615, VxRail VE-670, VxRail VP-760, VxRail VP-7625, VxRail VP-770, VxRail VS-760 ...
Propiedades del artículo
Número del artículo: 000473635
Tipo de artículo: Dell Security Advisory
Última modificación: 05 jun. 2026
Encuentre respuestas a sus preguntas de otros usuarios de Dell
Servicios de soporte
Compruebe si el dispositivo está cubierto por los servicios de soporte.