DSA-2025-184: Security Update for Dell Data Lakehouse Multiple Third-Party Component Vulnerabilities

概要: Dell Data Lakehouse remediation is available for multiple security vulnerabilities that could be exploited by malicious users to compromise the affected system.

この記事は次に適用されます: この記事は次には適用されません: この記事は、特定の製品に関連付けられていません。 すべての製品パージョンがこの記事に記載されているわけではありません。

影響

Critical

詳細

Third-party Component

CVEs

More Information

busybox

CVE-2023-42363, CVE-2023-42364, CVE-2023-42365, CVE-2023-42366

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

json-path v2.8.0

CVE-2023-51074

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

derby

CVE-2018-1313, CVE-2022-46337

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

glib2

CVE-2024-52533

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

go

CVE-2022-41716, CVE-2023-29402, CVE-2023-29404, CVE-2023-29405, CVE-2023-39323, CVE-2023-45285

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

Intel(R) TDX Module

CVE-2024-27457

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

Intel(R) Xeon(R) processor

CVE-2024-23919, CVE-2024-25565, CVE-2024-31068, CVE-2024-34023, CVE-2024-34170, CVE-2024-36242, CVE-2024-38660, CVE-2024-38665

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

java

CVE-2024-20918, CVE-2024-20926, CVE-2024-20952

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

Apache Log4j SMTP

CVE-2020-9488

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

Bouncy Castle Java Cryptography APIs

CVE-2024-30172

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

iq80 Snappy

CVE-2024-36124

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

EDK2

CVE-2024-38796

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

デル・テクノロジーズでは、すべてのお客様に対して、CVSSベース スコアに加えて、特定のセキュリティの脆弱性に付随する潜在的な重要度に影響する可能性のある現状スコアや環境スコアも考慮することをお勧めしています。

影響を受ける製品と修復

Product

Affected Versions

Remediated Versions

Link

Dell Data Lakehouse

Versions prior to 1.4.0.0

Version 1.4.0.0 or later

https://www.dell.com/support/product-details/product/dell-data-lakehouse/drivers

Product

Affected Versions

Remediated Versions

Link

Dell Data Lakehouse

Versions prior to 1.4.0.0

Version 1.4.0.0 or later

https://www.dell.com/support/product-details/product/dell-data-lakehouse/drivers

変更履歴

Revision

Date

Description

1.0

2025-04-16

Initial Release

関連情報

対象製品

Data Management, Dell Data Lakehouse
文書のプロパティ
文書番号: 000308929
文書の種類: Dell Security Advisory
最終更新: 09 9月 2025
質問に対する他のDellユーザーからの回答を見つける
サポート サービス
お使いのデバイスがサポート サービスの対象かどうかを確認してください。