DSA-2025-432: Security Update for Dell BSAFE™ SSL-J Vulnerability

概要: Dell BSAFE SSL-J remediation is available to address a vulnerability that could be exploited by malicious users to compromise the affected system.

この記事は次に適用されます: この記事は次には適用されません: この記事は、特定の製品に関連付けられていません。 すべての製品パージョンがこの記事に記載されているわけではありません。

影響

High

詳細

Proprietary Code CVE Description CVSS Base Score CVSS Vector String
CVE-2025-46638

Dell BSAFE SSL-J contains an allocation of resources without limits or throttling vulnerability. An unauthenticated remote attacker could potentially exploit this vulnerability, leading to a Denial of Service (DoS). 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HThis hyperlink is taking you to a website outside of Dell Technologies.
Proprietary Code CVE Description CVSS Base Score CVSS Vector String
CVE-2025-46638

Dell BSAFE SSL-J contains an allocation of resources without limits or throttling vulnerability. An unauthenticated remote attacker could potentially exploit this vulnerability, leading to a Denial of Service (DoS). 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HThis hyperlink is taking you to a website outside of Dell Technologies.
デル・テクノロジーズでは、すべてのお客様に対して、CVSSベース スコアに加えて、特定のセキュリティの脆弱性に付随する潜在的な重要度に影響する可能性のある現状スコアや環境スコアも考慮することをお勧めしています。

影響を受ける製品と修復

CVE addressed Product Affected versions Remediated versions Link
CVE-2025-46638 Dell BSAFE SSL-J Versions prior to 7.4 Version 7.4 How To Request a Dell BSAFE product download
CVE addressed Product Affected versions Remediated versions Link
CVE-2025-46638 Dell BSAFE SSL-J Versions prior to 7.4 Version 7.4 How To Request a Dell BSAFE product download

回避策と緩和策

CVE ID Workaround and Mitigation
CVE-2025-46638 Use the javax.net.ssl.sessionCacheSize property to set a limit.

変更履歴

RevisionDateDescription
1.02025-12-02Initial Release
2.02026-06-02Public CVE details

関連情報

対象製品

BSAFE SSL-J
文書のプロパティ
文書番号: 000398976
文書の種類: Dell Security Advisory
最終更新: 02 6月 2026
質問に対する他のDellユーザーからの回答を見つける
サポート サービス
お使いのデバイスがサポート サービスの対象かどうかを確認してください。