DSA-2025-023: Security Update for Dell Connectrix MDS Cisco Bootloader Vulnerability
Résumé: Dell Connectrix MDS-Series remediation is available for the Bootloader that could be exploited by malicious users to compromise the affected system.
Cet article concerne
Cet article ne concerne pas
Cet article n’est associé à aucun produit spécifique.
Toutes les versions du produit ne sont pas identifiées dans cet article.
Impact
Medium
Détails
| Third-party Component | CVEs | More Information |
| Bootloader | CVE-2024-20397 | CVE-2024-20397 |
Produits concernés et mesure corrective
| Product | Software/Firmware | Affected Versions | Remediated Versions | Link |
| Connectrix MDS-Series | NX-OS | Versions prior to 9.4(2) | Versions 9.4(2a) or later | https://www.dell.com/support/home/product-support/product/connectrix-mds-series-hardware/drivers |
| Product | Software/Firmware | Affected Versions | Remediated Versions | Link |
| Connectrix MDS-Series | NX-OS | Versions prior to 9.4(2) | Versions 9.4(2a) or later | https://www.dell.com/support/home/product-support/product/connectrix-mds-series-hardware/drivers |
Solutions de contournement et mesures d’atténuation
| CVE ID | Workaround and Mitigation |
| CVE-2024-20397 | For Cisco MDS and Nexus standalone platforms, if the device was not previously upgraded by using the install all CLI command, the BIOS might not have been upgraded. Even if customers are running a fixed Cisco NX-OS Software release, they are advised to check the BIOS version and use the install all command to complete the BIOS upgrade, if applicable. So even if the device is running the fixed release we recommend checking the actual BIOS version to be sure. |
Historique des révisions
| Revision | Date | Description |
| 1.0 | 2025-01-06 | Initial Release |
Informations connexes
Mention légale
Produits concernés
Connectrix MDS-9124V, Connectrix MDS-9132T, Connectrix MDS-9148S, Connectrix MDS-9148T, Connectrix MDS-9148V, Connectrix MDS-9220i, Connectrix MDS-9250i, Connectrix MDS-9396S, Connectrix MDS-9396S PSI, Connectrix MDS-9396T, Connectrix MDS-9396V
, Connectrix MDS-9706, Connectrix MDS-9706-V2, Connectrix MDS-9710, Connectrix MDS-9710-V2, Connectrix MDS-9718, Connectrix MDS-9718-V3, Connectrix MDS-Series Hardware, Connectrix MDS 9132T, Connectrix MDS 9148S, Connectrix MDS 9148T, Connectrix MDS 9396S, Connectrix MDS 9396T
...
Propriétés de l’article
Numéro d’article: 000261082
Type d’article: Dell Security Advisory
Dernière modification: 06 janv. 2025
Trouvez des réponses à vos questions auprès d’autres utilisateurs Dell
Services de support
Vérifiez si votre appareil est couvert par les services de support.