DSA-2021-278: Dell Enterprise Storage Analytics for vRealize Operations Security Update for Apache Log4j Remote Code Execution Vulnerability

Résumé: Dell EMC Enterprise Storage Analytics for vRealize Operations remediation is available for the Apache Log4j Remote Code Execution Vulnerability that may be exploited by malicious users to compromise the affected system. Dell recommends implementing this remediation as soon as possible in light of the critical severity of the vulnerability. ...

Cet article concerne Cet article ne concerne pas Cet article n’est associé à aucun produit spécifique. Toutes les versions du produit ne sont pas identifiées dans cet article.

Impact

Critical

Détails

Third-party Component CVE More information
Apache Log4j CVE-2021-44228, CVE-2021-45046 Apache Log4j Remote Code Execution This hyperlink is taking you to a website outside of Dell Technologies.
Third-party Component CVE More information
Apache Log4j CVE-2021-44228, CVE-2021-45046 Apache Log4j Remote Code Execution This hyperlink is taking you to a website outside of Dell Technologies.
Dell Technologies recommande à tous les clients de prendre en compte à la fois le score de base CVSS et les scores temporels et environnementaux pertinents qui peuvent avoir un impact sur la gravité potentielle associée à une faille de sécurité donnée.

Produits concernés et mesure corrective

Product Affected Versions Updated Versions Link to Update
Dell EMC Enterprise Storage Analytics for vRealize Operations Versions before 6.0.0 6.3.0 Support for Enterprise Storage Analytics for vRealize Operations | Drivers & Downloads | Dell US
Dell EMC Enterprise Storage Analytics for vRealize Operations Version 6.1.0 6.3.0 if feasible; 6.1.1 Support for Enterprise Storage Analytics for vRealize Operations | Drivers & Downloads | Dell US
Storage Analytics for vRealize Operations Versions 6.2.x 6.3.0 if feasible; 6.2.2 Support for Enterprise Storage Analytics for vRealize Operations | Drivers & Downloads | Dell US

Note: The above table may not be a comprehensive list of all affected supported versions and may be updated as more information becomes available.
Product Affected Versions Updated Versions Link to Update
Dell EMC Enterprise Storage Analytics for vRealize Operations Versions before 6.0.0 6.3.0 Support for Enterprise Storage Analytics for vRealize Operations | Drivers & Downloads | Dell US
Dell EMC Enterprise Storage Analytics for vRealize Operations Version 6.1.0 6.3.0 if feasible; 6.1.1 Support for Enterprise Storage Analytics for vRealize Operations | Drivers & Downloads | Dell US
Storage Analytics for vRealize Operations Versions 6.2.x 6.3.0 if feasible; 6.2.2 Support for Enterprise Storage Analytics for vRealize Operations | Drivers & Downloads | Dell US

Note: The above table may not be a comprehensive list of all affected supported versions and may be updated as more information becomes available.

Solutions de contournement et mesures d’atténuation

VMware has announced two KB articles to mitigate this vulnerability, https://kb.vmware.com/s/article/87076 This hyperlink is taking you to a website outside of Dell Technologies. and https://kb.vmware.com/s/article/87080.This hyperlink is taking you to a website outside of Dell Technologies.

Historique des révisions

RevisionDateDescription
1.02021-12-14Initial Release
1.12021-12-31Added CVE-2021-45046

Informations connexes

Produits concernés

Product Security Information, Enterprise Storage Analytics for vRealize Operations
Propriétés de l’article
Numéro d’article: 000194488
Type d’article: Dell Security Advisory
Dernière modification: 05 nov. 2025
Trouvez des réponses à vos questions auprès d’autres utilisateurs Dell
Services de support
Vérifiez si votre appareil est couvert par les services de support.