DSA-2023-428: Security Update for Dell Index Engines CyberSense

Riepilogo: Dell Cyber Sense remediation is available for multiple security vulnerabilities that could be exploited by malicious users to compromise the affected system.

Questo articolo si applica a Questo articolo non si applica a Questo articolo non è legato a un prodotto specifico. Non tutte le versioni del prodotto sono identificate in questo articolo.

Impatto

High

Dettagli

Third-Party Components 

CVEs

More Information 

openssl

 

CVE-2023-3817 

 

NVD - CVE-2023-3817 (nist.gov)This hyperlink is taking you to a website outside of Dell Technologies.  

util-linux

 

CVE-2018-7738 

 

NVD - CVE-2018-7738 (nist.gov)This hyperlink is taking you to a website outside of Dell Technologies. 

curl

 

CVE-2023-38039 

 

NVD - CVE-2023-38039 (nist.gov)This hyperlink is taking you to a website outside of Dell Technologies. 

python

 

CVE-2022-48566 

 

NVD - CVE-2022-48566 (nist.gov)This hyperlink is taking you to a website outside of Dell Technologies. 

libxml2

 

CVE-2023-39615 

 

NVD - CVE-2023-39615 (nist.gov)This hyperlink is taking you to a website outside of Dell Technologies. 

libpq5

 

CVE-2023-2454 
CVE-2023-2455 
CVE-2023-39417 
CVE-2023-39418 

See NVD link below for individual scores for each CVE https://nvd.nist.govThis hyperlink is taking you to a website outside of Dell Technologies.

 

tomcat

 

CVE-2023-41080 

 

NVD - CVE-2023-41080 (nist.gov)This hyperlink is taking you to a website outside of Dell Technologies. 

bind

 

CVE-2023-2828 
CVE-2023-3341 

 

See NVD link below for individual scores for each CVE https://nvd.nist.govThis hyperlink is taking you to a website outside of Dell Technologies. 

 

java

 

CVE-2023-21930 
CVE-2023-21937 
CVE-2023-21938 
CVE-2023-21939 
CVE-2023-21954 
CVE-2023-21967 
CVE-2023-21968 
CVE-2023-22045 
CVE-2023-22049 

See NVD link below for individual scores for each CVE https://nvd.nist.govThis hyperlink is taking you to a website outside of Dell Technologies. 

 

Third-Party Components 

CVEs

More Information 

openssl

 

CVE-2023-3817 

 

NVD - CVE-2023-3817 (nist.gov)This hyperlink is taking you to a website outside of Dell Technologies.  

util-linux

 

CVE-2018-7738 

 

NVD - CVE-2018-7738 (nist.gov)This hyperlink is taking you to a website outside of Dell Technologies. 

curl

 

CVE-2023-38039 

 

NVD - CVE-2023-38039 (nist.gov)This hyperlink is taking you to a website outside of Dell Technologies. 

python

 

CVE-2022-48566 

 

NVD - CVE-2022-48566 (nist.gov)This hyperlink is taking you to a website outside of Dell Technologies. 

libxml2

 

CVE-2023-39615 

 

NVD - CVE-2023-39615 (nist.gov)This hyperlink is taking you to a website outside of Dell Technologies. 

libpq5

 

CVE-2023-2454 
CVE-2023-2455 
CVE-2023-39417 
CVE-2023-39418 

See NVD link below for individual scores for each CVE https://nvd.nist.govThis hyperlink is taking you to a website outside of Dell Technologies.

 

tomcat

 

CVE-2023-41080 

 

NVD - CVE-2023-41080 (nist.gov)This hyperlink is taking you to a website outside of Dell Technologies. 

bind

 

CVE-2023-2828 
CVE-2023-3341 

 

See NVD link below for individual scores for each CVE https://nvd.nist.govThis hyperlink is taking you to a website outside of Dell Technologies. 

 

java

 

CVE-2023-21930 
CVE-2023-21937 
CVE-2023-21938 
CVE-2023-21939 
CVE-2023-21954 
CVE-2023-21967 
CVE-2023-21968 
CVE-2023-22045 
CVE-2023-22049 

See NVD link below for individual scores for each CVE https://nvd.nist.govThis hyperlink is taking you to a website outside of Dell Technologies. 

 

Dell Technologies raccomanda a tutti i clienti di prendere in considerazione sia il punteggio base CVSS, sia ogni eventuale punteggio temporale o ambientale che possa avere effetti sul livello di gravità potenziale associato a una specifica vulnerabilità di sicurezza.

Prodotti interessati e correzione

Product 

Software/Firmware

Affected Versions

Remediated Versions

Link

Cyber Sense  

Index Engines

8.3 and prior 

8.4 and later 

Apply latest Cyber Sense OS update package 

Product 

Software/Firmware

Affected Versions

Remediated Versions

Link

Cyber Sense  

Index Engines

8.3 and prior 

8.4 and later 

Apply latest Cyber Sense OS update package 

Cronologia delle revisioni

Revision 

Date 

Description 

1.0 

2023-11-21 

Initial Release 

Informazioni correlate

Prodotti interessati

CyberSense
Proprietà dell'articolo
Numero articolo: 000219751
Tipo di articolo: Dell Security Advisory
Ultima modifica: 19 set 2025
Trova risposta alle tue domande dagli altri utenti Dell
Support Services
Verifica che il dispositivo sia coperto dai Servizi di supporto.