DSA-2025-447: Security Update for Dell APEX Cloud Platform for Red Hat OpenShift for Multiple Third-Party Component Vulnerabilities

概要: Dell APEX Cloud Platform for Red Hat OpenShift remediation is available for multiple security vulnerabilities that could be exploited by malicious users to compromise the affected system. ...

この記事は次に適用されます: この記事は次には適用されません: この記事は、特定の製品に関連付けられていません。 すべての製品パージョンがこの記事に記載されているわけではありません。

影響

Critical

詳細

Third-party Component CVEs More Information
axios CVE-2025-58754 https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.
body-parser CVE-2024-45590 https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.
cryptography CVE-2024-12797 https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.
form-data CVE-2025-7783 https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.
containerd CVE-2024-25621, CVE-2024-40635, CVE-2025-64329 https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.
Go Lang crypto CVE-2025-22869 https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.
Go Lang net CVE-2025-22870, CVE-2025-22872 https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.
Go Lang oauth2 CVE-2025-22868 https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.
h2 CVE-2025-57804 https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.
Helm v3 CVE-2025-32386, CVE-2025-32387, CVE-2025-53547, CVE-2025-55198, CVE-2025-55199 https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.
jsonpath-plus CVE-2024-21534, CVE-2025-1302 https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.
path-to-regexp CVE-2024-45296, CVE-2024-52798 https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.
requests CVE-2024-47081 https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.
stdlib CVE-2024-24791, CVE-2024-34155, CVE-2024-34156, CVE-2024-34158, CVE-2024-45336, CVE-2024-45341, CVE-2025-0913, CVE-2025-22866, CVE-2025-22871, CVE-2025-4673, CVE-2025-47906, CVE-2025-47907, CVE-2025-47912, CVE-2025-58183, CVE-2025-58185, CVE-2025-58186, CVE-2025-58187, CVE-2025-58188, CVE-2025-58189, CVE-2025-61723, CVE-2025-61724, CVE-2025-61725 https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.
urllib3 CVE-2025-50181, CVE-2025-50182 https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.
SuSE CVE-2024-10041, CVE-2024-2236, CVE-2024-23337, CVE-2024-35221, CVE-2024-41965, CVE-2024-6874, CVE-2025-0665, CVE-2025-10148, CVE-2025-23419, CVE-2025-24294, CVE-2025-27221, CVE-2025-27613, CVE-2025-27614, CVE-2025-29768, CVE-2025-30258, CVE-2025-32462, CVE-2025-32463, CVE-2025-3576, CVE-2025-40778, CVE-2025-40780, CVE-2025-40909, CVE-2025-4373, CVE-2025-4435, CVE-2025-4598, CVE-2025-46835, CVE-2025-46836, CVE-2025-48060, CVE-2025-48384, CVE-2025-48385, CVE-2025-4877, CVE-2025-4878, CVE-2025-48964, CVE-2025-4947, CVE-2025-49794, CVE-2025-49795, CVE-2025-49796, CVE-2025-5025, CVE-2025-5318, CVE-2025-5372, CVE-2025-53859, CVE-2025-53905, CVE-2025-53906, CVE-2025-5399, CVE-2025-54349, CVE-2025-54350, CVE-2025-54351, CVE-2025-55157, CVE-2025-55158, CVE-2025-59375, CVE-2025-6018, CVE-2025-6021, CVE-2025-6052, CVE-2025-6069, CVE-2025-6170, CVE-2025-61984, CVE-2025-61985, CVE-2025-6297, CVE-2025-6442, CVE-2025-6965, CVE-2025-7425, CVE-2025-8058, CVE-2025-8114, CVE-2025-8176, CVE-2025-8177, CVE-2025-8194, CVE-2025-8277, CVE-2025-8534, CVE-2025-8677, CVE-2025-8961, CVE-2025-9086, CVE-2025-9165, CVE-2025-9230, CVE-2025-9900 www.suse.comThis hyperlink is taking you to a website outside of Dell Technologies.

 

デル・テクノロジーズでは、すべてのお客様に対して、CVSSベース スコアに加えて、特定のセキュリティの脆弱性に付随する潜在的な重要度に影響する可能性のある現状スコアや環境スコアも考慮することをお勧めしています。

影響を受ける製品と修復

Product Affected Versions Remediated Versions Link
APEX Cloud Platform for Red Hat OpenShift Versions prior to 03.02.06.00 Version 03.02.06.00 or later https://www.dell.com/support/home/product-support/product/apex-cloud-pf-rh-openshift/drivers

 

Product Affected Versions Remediated Versions Link
APEX Cloud Platform for Red Hat OpenShift Versions prior to 03.02.06.00 Version 03.02.06.00 or later https://www.dell.com/support/home/product-support/product/apex-cloud-pf-rh-openshift/drivers

 

変更履歴

RevisionDateDescription
1.02025-12-04Initial Release

 

関連情報

対象製品

APEX, APEX Cloud Platform for Red Hat OpenShift, APEX Cloud Services
文書のプロパティ
文書番号: 000399866
文書の種類: Dell Security Advisory
最終更新: 04 12月 2025
質問に対する他のDellユーザーからの回答を見つける
サポート サービス
お使いのデバイスがサポート サービスの対象かどうかを確認してください。