DSA-2020-145: Dell EMC Server Platform Security Advisory for the 2020.1 Intel Platform Updates (June 2020)-DSA

Riepilogo: DSA-2020-145: Dell EMC Server Platform Security Advisory for the 2020.1 Intel Platform Updates (June 2020) - CVE-2020-0528, CVE-2020-0529, CVE-2020-0545

Questo articolo si applica a Questo articolo non si applica a Questo articolo non è legato a un prodotto specifico. Non tutte le versioni del prodotto sono identificate in questo articolo.

Impatto

Medium

Dettagli

Updates are available to address the following security vulnerabilities.

Intel-SA-003222020.1 IPU - BIOS Advisory

  • CVE-2020-0528, CVE-2020-0529


Intel-SA-00295: 2020.1 IPU - Intel® CSME, SPS, TXE, AMT and DAL Advisory

  • CVE-2020-0545, CVE-2020-0586

Customers should also review their OS vendor’s Security Advisory for information, to ensure appropriate vulnerability identification and patch/configuration measures to be used in conjunction with the updates provided by Dell for the most effective mitigation.

For more information about any of the Common Vulnerabilities and Exposures (CVEs) mentioned here, consult the National Vulnerability Database (NVD) at http://nvd.nist.gov/home.cfm. To search for a particular CVE, use the database’s search utility at http://web.nvd.nist.gov/view/vuln/search.

Updates are available to address the following security vulnerabilities.

Intel-SA-003222020.1 IPU - BIOS Advisory

  • CVE-2020-0528, CVE-2020-0529


Intel-SA-00295: 2020.1 IPU - Intel® CSME, SPS, TXE, AMT and DAL Advisory

  • CVE-2020-0545, CVE-2020-0586

Customers should also review their OS vendor’s Security Advisory for information, to ensure appropriate vulnerability identification and patch/configuration measures to be used in conjunction with the updates provided by Dell for the most effective mitigation.

For more information about any of the Common Vulnerabilities and Exposures (CVEs) mentioned here, consult the National Vulnerability Database (NVD) at http://nvd.nist.gov/home.cfm. To search for a particular CVE, use the database’s search utility at http://web.nvd.nist.gov/view/vuln/search.

Dell Technologies raccomanda a tutti i clienti di prendere in considerazione sia il punteggio base CVSS, sia ogni eventuale punteggio temporale o ambientale che possa avere effetti sul livello di gravità potenziale associato a una specifica vulnerabilità di sicurezza.

Prodotti interessati e correzione





Affected products:

Dell EMC Servers (see Resolution section below for complete list of affected products)

Resolution
The following is a list of impacted products and expected release dates. Dell recommends all customers update at the earliest opportunity.


We encourage customers to review Intel’s Security Advisory for information, including appropriate identification and mitigation measures.

Please visit the Drivers and Downloads site for updates on the applicable products. Note, the following list of impacted products with released BIOS updates are linked. To learn more, visit the Dell Knowledge Base article Dell Updating Firmware using Dell Update Packages (DUP’s), and download the update for your Dell computer.


Customers may use one of the Dell notification solutions to be notified and download driver, BIOS and firmware updates automatically once available.
 
Dell EMC Server Products Affected
 
Product BIOS Update Version (or greater) Release Date Expected Release Date
(MM/DD/YYYY)
R640R740R740XDR940, NX3240, NX3340 2.8.2 09/09/2020
XC740XD, XC640, XC940 To be provided upon release August 2020
R540R440T440XR2 2.8.2 09/09/2020
R740XD2 2.8.2 09/09/2020
R840R940XA 2.8.2 09/09/2020
T640 2.8.2 09/09/2020
C6420, XC6420 2.8.2 09/09/202009/09/2020
FC640M640M640P 2.8.22.8.22.8.2 09/09/2020
MX740C 2.8.22.8.2 09/09/2020
MX840C 2.8.2 09/09/2020
C4140 2.8.2 09/09/2020
T140T340R240R340, NX440 2.3.5 07/14/2020
T130T330R230R330, NX430 2.10.1 06/29/2020
DSS9600DSS9620DSS9630 2.6.3 04/15/2020

Informazioni correlate

Prodotti interessati

DSS 9600, DSS 9620, DSS 9630, PowerEdge XR2, Poweredge C4140, PowerEdge C6420, PowerEdge FC640, PowerEdge M640, PowerEdge M640 (for PE VRTX), PowerEdge MX740C, PowerEdge MX840C, PowerEdge R240, PowerEdge R340, PowerEdge R440, PowerEdge R540 , PowerEdge R640, PowerEdge R740, PowerEdge R740XD, PowerEdge R740XD2, PowerEdge R840, PowerEdge R940, PowerEdge R940xa, PowerEdge T130, PowerEdge T140, PowerEdge T340, PowerEdge T440, PowerEdge T640 ...

Prodotti

PowerEdge, Product Security Information
Proprietà dell'articolo
Numero articolo: 000180638
Tipo di articolo: Dell Security Advisory
Ultima modifica: 22 ott 2025
Trova risposta alle tue domande dagli altri utenti Dell
Support Services
Verifica che il dispositivo sia coperto dai Servizi di supporto.