DSA-2021-278: Dell Enterprise Storage Analytics for vRealize Operations Security Update for Apache Log4j Remote Code Execution Vulnerability

Yhteenveto: Dell EMC Enterprise Storage Analytics for vRealize Operations remediation is available for the Apache Log4j Remote Code Execution Vulnerability that may be exploited by malicious users to compromise the affected system. Dell recommends implementing this remediation as soon as possible in light of the critical severity of the vulnerability. ...

Tämä artikkeli koskee tuotetta Tämä artikkeli ei koske tuotetta Tämä artikkeli ei liity tiettyyn tuotteeseen. Tässä artikkelissa ei yksilöidä kaikkia tuoteversioita.

Vaikutus

Critical

Tiedot

Third-party Component CVE More information
Apache Log4j CVE-2021-44228, CVE-2021-45046 Apache Log4j Remote Code Execution This hyperlink is taking you to a website outside of Dell Technologies.
Third-party Component CVE More information
Apache Log4j CVE-2021-44228, CVE-2021-45046 Apache Log4j Remote Code Execution This hyperlink is taking you to a website outside of Dell Technologies.
Dell Technologies suosittelee, että kaikki asiakkaat ottavat huomioon sekä CVSS-peruspistemäärän että kaikki asiaankuuluvat väliaikaiset ja ympäristöön liittyvät pisteet, jotka voivat vaikuttaa tietyn tietoturvahaavoittuvuuden mahdolliseen vakavuuteen.

Tuotteet, joihin asia vaikuttaa, ja tilanteen korjaaminen

Product Affected Versions Updated Versions Link to Update
Dell EMC Enterprise Storage Analytics for vRealize Operations Versions before 6.0.0 6.3.0 Support for Enterprise Storage Analytics for vRealize Operations | Drivers & Downloads | Dell US
Dell EMC Enterprise Storage Analytics for vRealize Operations Version 6.1.0 6.3.0 if feasible; 6.1.1 Support for Enterprise Storage Analytics for vRealize Operations | Drivers & Downloads | Dell US
Storage Analytics for vRealize Operations Versions 6.2.x 6.3.0 if feasible; 6.2.2 Support for Enterprise Storage Analytics for vRealize Operations | Drivers & Downloads | Dell US

Note: The above table may not be a comprehensive list of all affected supported versions and may be updated as more information becomes available.
Product Affected Versions Updated Versions Link to Update
Dell EMC Enterprise Storage Analytics for vRealize Operations Versions before 6.0.0 6.3.0 Support for Enterprise Storage Analytics for vRealize Operations | Drivers & Downloads | Dell US
Dell EMC Enterprise Storage Analytics for vRealize Operations Version 6.1.0 6.3.0 if feasible; 6.1.1 Support for Enterprise Storage Analytics for vRealize Operations | Drivers & Downloads | Dell US
Storage Analytics for vRealize Operations Versions 6.2.x 6.3.0 if feasible; 6.2.2 Support for Enterprise Storage Analytics for vRealize Operations | Drivers & Downloads | Dell US

Note: The above table may not be a comprehensive list of all affected supported versions and may be updated as more information becomes available.

Kiertotavat ja lievennyskeinot

VMware has announced two KB articles to mitigate this vulnerability, https://kb.vmware.com/s/article/87076 This hyperlink is taking you to a website outside of Dell Technologies. and https://kb.vmware.com/s/article/87080.This hyperlink is taking you to a website outside of Dell Technologies.

Versiohistoria

RevisionDateDescription
1.02021-12-14Initial Release
1.12021-12-31Added CVE-2021-45046

Asiaan liittyvät tiedot

Tuotteet, joihin vaikutus kohdistuu

Product Security Information, Enterprise Storage Analytics for vRealize Operations
Artikkelin ominaisuudet
Artikkelin numero: 000194488
Artikkelin tyyppi: Dell Security Advisory
Viimeksi muutettu: 05 marrask. 2025
Etsi vastauksia kysymyksiisi muilta Dell-käyttäjiltä
Tukipalvelut
Tarkista, kuuluuko laitteesi tukipalveluiden piiriin.