DSA-2026-127: Security Update for Dell PowerScale OneFS Multiple Third-Party Component Vulnerabilities

概要: Dell PowerScale OneFS remediation is available for multiple security vulnerabilities that could be exploited by malicious users to compromise the affected system.

この記事は次に適用されます: この記事は次には適用されません: この記事は、特定の製品に関連付けられていません。 すべての製品パージョンがこの記事に記載されているわけではありません。

影響

Critical

詳細

Third-Party Component CVEs More information
AMI AptioV CVE-2024-42444, CVE-2024-7344 https://nvd.nist.gov/vuln/search
Dell PowerEdge Server BIOS CVE-2024-45332, CVE-2024-28047, CVE-2024-28956 DSA-2025-041, DSA-2025-156
OpenSSL CVE-2022-4450, CVE-2023-0215, CVE-2023-0286, CVE-2023-0464, CVE-2023-0465, CVE-2023-6237, CVE-2024-5535, CVE-2024-6119, CVE-2024-13176 https://nvd.nist.gov/vuln/search
Tianocore EDK2  CVE-2024-38796 https://nvd.nist.gov/vuln/search

 

デル・テクノロジーズでは、すべてのお客様に対して、CVSSベース スコアに加えて、特定のセキュリティの脆弱性に付随する潜在的な重要度に影響する可能性のある現状スコアや環境スコアも考慮することをお勧めしています。

影響を受ける製品と修復

Product Software/Firmware Affected Versions Remediated Versions Link
PowerScale A300 PowerScale Node Firmware Package Versions prior to 13.2.3 Version 13.2.3 or later PowerScale OneFS Downloads Area
PowerScale A3000 PowerScale Node Firmware Package Versions prior to 13.2.3  Version 13.2.3 or later PowerScale OneFS Downloads Area
PowerScale H700 PowerScale Node Firmware Package Versions prior to 13.2.3  Version 13.2.3 or later PowerScale OneFS Downloads Area
PowerScale H7000 PowerScale Node Firmware Package Versions prior to 13.2.3  Version 13.2.3 or later PowerScale OneFS Downloads Area

 

Product Software/Firmware Affected Versions Remediated Versions Link
PowerScale A300 PowerScale Node Firmware Package Versions prior to 13.2.3 Version 13.2.3 or later PowerScale OneFS Downloads Area
PowerScale A3000 PowerScale Node Firmware Package Versions prior to 13.2.3  Version 13.2.3 or later PowerScale OneFS Downloads Area
PowerScale H700 PowerScale Node Firmware Package Versions prior to 13.2.3  Version 13.2.3 or later PowerScale OneFS Downloads Area
PowerScale H7000 PowerScale Node Firmware Package Versions prior to 13.2.3  Version 13.2.3 or later PowerScale OneFS Downloads Area

 

Notes:

  • We encourage all customers to upgrade to the remediated versions. If an upgrade is not feasible, customers should review the CVE details to determine potential risk to their environments.
  • To identify which nodes require upgrading, please refer to the firmware assessment report. For instructions on completing the assessment and report, please refer to the "Run a firmware assessment" section in PowerScale Node Firmware Package 13.2.3 Release Notes documented in Firmware - PowerScale Info Hub.

回避策と緩和策

None

変更履歴

RevisionDateDescription
1.02026-05-06Initial Release

 

関連情報

対象製品

Isilon, PowerScale OneFS, PowerScale Archive A300, PowerScale Archive A3000, PowerScale Hybrid H700, PowerScale Hybrid H7000
文書のプロパティ
文書番号: 000461405
文書の種類: Dell Security Advisory
最終更新: 05 5月 2026
質問に対する他のDellユーザーからの回答を見つける
サポート サービス
お使いのデバイスがサポート サービスの対象かどうかを確認してください。