DSA-2025-023: Security Update for Dell Connectrix MDS Cisco Bootloader Vulnerability
概要: Dell Connectrix MDS-Series remediation is available for the Bootloader that could be exploited by malicious users to compromise the affected system.
この記事は次に適用されます:
この記事は次には適用されません:
この記事は、特定の製品に関連付けられていません。
すべての製品パージョンがこの記事に記載されているわけではありません。
影響
Medium
詳細
| Third-party Component | CVEs | More Information |
| Bootloader | CVE-2024-20397 | CVE-2024-20397 |
影響を受ける製品と修復
| Product | Software/Firmware | Affected Versions | Remediated Versions | Link |
| Connectrix MDS-Series | NX-OS | Versions prior to 9.4(2) | Versions 9.4(2a) or later | https://www.dell.com/support/home/product-support/product/connectrix-mds-series-hardware/drivers |
| Product | Software/Firmware | Affected Versions | Remediated Versions | Link |
| Connectrix MDS-Series | NX-OS | Versions prior to 9.4(2) | Versions 9.4(2a) or later | https://www.dell.com/support/home/product-support/product/connectrix-mds-series-hardware/drivers |
回避策と緩和策
| CVE ID | Workaround and Mitigation |
| CVE-2024-20397 | For Cisco MDS and Nexus standalone platforms, if the device was not previously upgraded by using the install all CLI command, the BIOS might not have been upgraded. Even if customers are running a fixed Cisco NX-OS Software release, they are advised to check the BIOS version and use the install all command to complete the BIOS upgrade, if applicable. So even if the device is running the fixed release we recommend checking the actual BIOS version to be sure. |
変更履歴
| Revision | Date | Description |
| 1.0 | 2025-01-06 | Initial Release |
関連情報
法的免責事項
対象製品
Connectrix MDS-9124V, Connectrix MDS-9132T, Connectrix MDS-9148S, Connectrix MDS-9148T, Connectrix MDS-9148V, Connectrix MDS-9220i, Connectrix MDS-9250i, Connectrix MDS-9396S, Connectrix MDS-9396S PSI, Connectrix MDS-9396T, Connectrix MDS-9396V
, Connectrix MDS-9706, Connectrix MDS-9706-V2, Connectrix MDS-9710, Connectrix MDS-9710-V2, Connectrix MDS-9718, Connectrix MDS-9718-V3, Connectrix MDS-Series Hardware, Connectrix MDS 9132T, Connectrix MDS 9148S, Connectrix MDS 9148T, Connectrix MDS 9396S, Connectrix MDS 9396T
...
文書のプロパティ
文書番号: 000261082
文書の種類: Dell Security Advisory
最終更新: 06 1月 2025
質問に対する他のDellユーザーからの回答を見つける
サポート サービス
お使いのデバイスがサポート サービスの対象かどうかを確認してください。