DSA-2021-278: Dell Enterprise Storage Analytics for vRealize Operations Security Update for Apache Log4j Remote Code Execution Vulnerability
Yhteenveto: Dell EMC Enterprise Storage Analytics for vRealize Operations remediation is available for the Apache Log4j Remote Code Execution Vulnerability that may be exploited by malicious users to compromise the affected system. Dell recommends implementing this remediation as soon as possible in light of the critical severity of the vulnerability. ...
Tämä artikkeli koskee tuotetta
Tämä artikkeli ei koske tuotetta
Tämä artikkeli ei liity tiettyyn tuotteeseen.
Tässä artikkelissa ei yksilöidä kaikkia tuoteversioita.
Vaikutus
Critical
Tiedot
| Third-party Component | CVE | More information |
| Apache Log4j | CVE-2021-44228, CVE-2021-45046 | Apache Log4j Remote Code Execution |
| Third-party Component | CVE | More information |
| Apache Log4j | CVE-2021-44228, CVE-2021-45046 | Apache Log4j Remote Code Execution |
Tuotteet, joihin asia vaikuttaa, ja tilanteen korjaaminen
| Product | Affected Versions | Updated Versions | Link to Update |
| Dell EMC Enterprise Storage Analytics for vRealize Operations | Versions before 6.0.0 | 6.3.0 | Support for Enterprise Storage Analytics for vRealize Operations | Drivers & Downloads | Dell US |
| Dell EMC Enterprise Storage Analytics for vRealize Operations | Version 6.1.0 | 6.3.0 if feasible; 6.1.1 | Support for Enterprise Storage Analytics for vRealize Operations | Drivers & Downloads | Dell US |
| Storage Analytics for vRealize Operations | Versions 6.2.x | 6.3.0 if feasible; 6.2.2 | Support for Enterprise Storage Analytics for vRealize Operations | Drivers & Downloads | Dell US |
Note: The above table may not be a comprehensive list of all affected supported versions and may be updated as more information becomes available.
| Product | Affected Versions | Updated Versions | Link to Update |
| Dell EMC Enterprise Storage Analytics for vRealize Operations | Versions before 6.0.0 | 6.3.0 | Support for Enterprise Storage Analytics for vRealize Operations | Drivers & Downloads | Dell US |
| Dell EMC Enterprise Storage Analytics for vRealize Operations | Version 6.1.0 | 6.3.0 if feasible; 6.1.1 | Support for Enterprise Storage Analytics for vRealize Operations | Drivers & Downloads | Dell US |
| Storage Analytics for vRealize Operations | Versions 6.2.x | 6.3.0 if feasible; 6.2.2 | Support for Enterprise Storage Analytics for vRealize Operations | Drivers & Downloads | Dell US |
Note: The above table may not be a comprehensive list of all affected supported versions and may be updated as more information becomes available.
Kiertotavat ja lievennyskeinot
VMware has announced two KB articles to mitigate this vulnerability, https://kb.vmware.com/s/article/87076 and https://kb.vmware.com/s/article/87080.
Versiohistoria
| Revision | Date | Description |
| 1.0 | 2021-12-14 | Initial Release |
| 1.1 | 2021-12-31 | Added CVE-2021-45046 |
Asiaan liittyvät tiedot
Vastuuvapauslauseke
Tuotteet, joihin vaikutus kohdistuu
Product Security Information, Enterprise Storage Analytics for vRealize OperationsArtikkelin ominaisuudet
Artikkelin numero: 000194488
Artikkelin tyyppi: Dell Security Advisory
Viimeksi muutettu: 05 marrask. 2025
Etsi vastauksia kysymyksiisi muilta Dell-käyttäjiltä
Tukipalvelut
Tarkista, kuuluuko laitteesi tukipalveluiden piiriin.