DSA-2025-172: Security Update for Dell Integrated System for Microsoft Azure Stack Hub Multiple Third-Party Component Vulnerabilities

Riepilogo: Dell Integrated System for Microsoft Azure Stack Hub remediation is available for Multiple Third-Party Component Vulnerabilities that could be exploited by malicious users to compromise the affected system. ...

Questo articolo si applica a Questo articolo non si applica a Questo articolo non è legato a un prodotto specifico. Non tutte le versioni del prodotto sono identificate in questo articolo.

Impatto

High

Dettagli

Third-party Component CVEs More Information
UEFI Firmware  CVE-2024-31155, CVE-2024-21859, CVE-2024-39279, CVE-2024-31157, CVE-2024-28047 INTEL-SA-01198This hyperlink is taking you to a website outside of Dell Technologies., INTEL-SA-01139This hyperlink is taking you to a website outside of Dell Technologies., INTEL-SA-01120This hyperlink is taking you to a website outside of Dell Technologies.
Intel SGX CVE-2024-36293 INTEL-SA-01213This hyperlink is taking you to a website outside of Dell Technologies.
Intel Processors CVE-2024-31068 INTEL-SA-01166This hyperlink is taking you to a website outside of Dell Technologies.
Ethernet Adapter Complete Driver Pack CVE-2024-24852, CVE-2024-36274 INTEL-SA-01144This hyperlink is taking you to a website outside of Dell Technologies.
Intel SPS Firmware CVE-2024-25571 INTEL-SA-01120This hyperlink is taking you to a website outside of Dell Technologies.
Data Streaming Accelerator CVE-2024-37020 INTEL-SA-01194This hyperlink is taking you to a website outside of Dell Technologies.
Integrated Dell Remote Access Controller 9 CVE-2023-52340, CVE-2024-42154  DSA-2024-460
Dell PowerEdge Server BIOS CVE-2024-38796 DSA-2025-038

 

Dell Technologies raccomanda a tutti i clienti di prendere in considerazione sia il punteggio base CVSS, sia ogni eventuale punteggio temporale o ambientale che possa avere effetti sul livello di gravità potenziale associato a una specifica vulnerabilità di sicurezza.

Prodotti interessati e correzione

CVEs Addressed Product Affected Versions Remediated Versions Link
CVE-2024-24852, CVE-2024-36274, CVE-2024-37020, CVE-2024-31155, CVE-2024-21859, CVE-2024-25571, CVE-2024-36293, CVE-2024-39279, CVE-2024-31157, CVE-2024-28047, CVE-2024-31068, CVE-2023-52340, CVE-2024-42154, CVE-2024-38796 Dell Integrated System for Microsoft Azure Stack Hub 16G Versions prior to 2502 Version 2502 or later https://www.dell.com/support/product-details/product/cloud-for-microsoft-azure-stack16g/drivers

 

CVEs Addressed Product Affected Versions Remediated Versions Link
CVE-2024-24852, CVE-2024-36274, CVE-2024-37020, CVE-2024-31155, CVE-2024-21859, CVE-2024-25571, CVE-2024-36293, CVE-2024-39279, CVE-2024-31157, CVE-2024-28047, CVE-2024-31068, CVE-2023-52340, CVE-2024-42154, CVE-2024-38796 Dell Integrated System for Microsoft Azure Stack Hub 16G Versions prior to 2502 Version 2502 or later https://www.dell.com/support/product-details/product/cloud-for-microsoft-azure-stack16g/drivers

 

Cronologia delle revisioni

Revision DateDescription
1.02025-04-09Initial Release
2.02025-04-09Advisory updated to include remediation for CVE-2024-24852, CVE-2024-36274, CVE-2024-25571 and CVE-2024-37020
3.302025-07-17Advisory updated to include remediation for CVE-2023-52340, CVE-2024-42154 and CVE-2024-38796

 

Informazioni correlate

Prodotti interessati

Integrated System for Microsoft Azure Stack Hub, Integrated System for Microsoft Azure Stack Hub 16G
Proprietà dell'articolo
Numero articolo: 000305823
Tipo di articolo: Dell Security Advisory
Ultima modifica: 17 lug 2025
Trova risposta alle tue domande dagli altri utenti Dell
Support Services
Verifica che il dispositivo sia coperto dai Servizi di supporto.