DSA-2024-379: Security Update for Dell iDRAC Service Module 7-Zip Vulnerability
Riepilogo: Dell iDRAC Service Module remediation is available for a 7-Zip vulnerability that could be exploited by malicious users to compromise the affected system.
Questo articolo si applica a
Questo articolo non si applica a
Questo articolo non è legato a un prodotto specifico.
Non tutte le versioni del prodotto sono identificate in questo articolo.
Impatto
High
Dettagli
| Third-party Component | CVEs | More Information |
|---|---|---|
| 7-Zip | CVE-2023-31102, CVE-2023-40481 | See NVD link below for individual scores for each CVE. http://nvd.nist.gov/ |
Prodotti interessati e correzione
| Product | Software/Firmware | Affected Versions | Remediated Versions | Link |
|---|---|---|---|---|
| iDRAC Service Module (Windows) | 7-Zip | Versions 4.3.0.0, 5.2.0.0, 5.3.0.0, and 5.3.1.0 | Hotfix 306929, A00 | https://www.dell.com/support/home/en-us/drivers/DriversDetails?driverid=M12VN |
| iDRAC Service Module (Linux) | 7-Zip | Versions 4.3.0.0, 5.2.0.0, 5.3.0.0, and 5.3.1.0 | Hotfix 306929, A00 | https://www.dell.com/support/home/en-us/drivers/DriversDetails?driverid=TPH56 |
| iDRAC Service Module (VIB) for ESXi 7.0 U3 | 7-Zip | Versions 5.2.0.0, 5.3.0.0, and 5.3.1.0 | 5.3.1.2, A00 | https://www.dell.com/support/home/en-us/drivers/DriversDetails?driverid=251YH |
| Product | Software/Firmware | Affected Versions | Remediated Versions | Link |
|---|---|---|---|---|
| iDRAC Service Module (Windows) | 7-Zip | Versions 4.3.0.0, 5.2.0.0, 5.3.0.0, and 5.3.1.0 | Hotfix 306929, A00 | https://www.dell.com/support/home/en-us/drivers/DriversDetails?driverid=M12VN |
| iDRAC Service Module (Linux) | 7-Zip | Versions 4.3.0.0, 5.2.0.0, 5.3.0.0, and 5.3.1.0 | Hotfix 306929, A00 | https://www.dell.com/support/home/en-us/drivers/DriversDetails?driverid=TPH56 |
| iDRAC Service Module (VIB) for ESXi 7.0 U3 | 7-Zip | Versions 5.2.0.0, 5.3.0.0, and 5.3.1.0 | 5.3.1.2, A00 | https://www.dell.com/support/home/en-us/drivers/DriversDetails?driverid=251YH |
- Remediation for 4.3.0.0 is only available for Windows and Linux platforms.
Cronologia delle revisioni
| Revision | Date | Description |
|---|---|---|
| 1.0 | 2024-09-03 | Initial Release |
| 2.0 | 2024-09-26 | Added 4.3.0.0 to affected versions for Windows and Linux |
Informazioni correlate
Dichiarazione di non responsabilità
Prodotti interessati
iDRAC Service ModuleProprietà dell'articolo
Numero articolo: 000228289
Tipo di articolo: Dell Security Advisory
Ultima modifica: 26 set 2024
Trova risposta alle tue domande dagli altri utenti Dell
Support Services
Verifica che il dispositivo sia coperto dai Servizi di supporto.