DSA-2021-270: Enterprise Hybrid Cloud Security Update for Apache Log4j Remote Code Execution Vulnerability (CVE-2021-44228)

요약: Enterprise Hybrid Cloud remediation is available for the Apache Log4j Remote Code Execution Vulnerability that may be exploited by malicious users to compromise the affected system. Dell recommends implementing this remediation as soon as possible in light of the critical severity of the vulnerability. ...

이 문서는 다음에 적용됩니다. 이 문서는 다음에 적용되지 않습니다. 이 문서는 특정 제품과 관련이 없습니다. 모든 제품 버전이 이 문서에 나와 있는 것은 아닙니다.

영향

Critical

세부 정보

Third-party Component CVE More information
Apache log4j CVE-2021-44228 Apache Log4j Remote Code Execution
DSN-2021-007: Dell Response to Apache Log4j Remote Code Execution Vulnerability 
Third-party Component CVE More information
Apache log4j CVE-2021-44228 Apache Log4j Remote Code Execution
DSN-2021-007: Dell Response to Apache Log4j Remote Code Execution Vulnerability 
Dell Technologies는 모든 고객이 CVSS 기본 점수와 관련 임시 및 환경 점수를 모두 고려할 것을 권장합니다. 이 경우 특정 보안 취약성과 관련된 잠재적인 심각도에 영향을 미칠 수 있습니다.

영향을 받는 제품 및 문제 해결

Enterprise Hybrid Cloud 4.1.2 workflows is not impacted by this advisory, including packages Update 1 through 8.

Monitor the following advisories and apply workaround guidance and remediations as they become available:
 
CVE Addressed Products Link to Update
CVE-2021-44228 VMware vCenter Server Appliance VMSA-2021-0028.3
VMware vRealize Automation 7.x
VMware vRealize Orchestrator 7.x
VMware NSX for Data Center for vSphere 6.x
VMware vRealize Log Insight 8.x
VMware vRealize Business for Cloud 7.x
Dell EMC Data Domain OS DSA-2021-274
 
Dell EMC Avamar DSA-2021-277
Dell EMC VxRail DSA-2021-265
VxBlock See vce6771 (requires customer login)
Dell EMC Unity Monitor Knowledge Baste Article 194414 for advisory publication: https://www.dell.com/support/kbdoc/en-uk/000194414/dell-response-to-apache-log4j-remote-code-execution-vulnerability
Dell EMC RecoverPoint for Virtual Machines DSA-2021-284

 Note: Dell EMC RecoverPoint for Virtual Machines plugin is not impacted by this advisory, all packages Update 1 through 8 are covered.
Enterprise Hybrid Cloud 4.1.2 workflows is not impacted by this advisory, including packages Update 1 through 8.

Monitor the following advisories and apply workaround guidance and remediations as they become available:
 
CVE Addressed Products Link to Update
CVE-2021-44228 VMware vCenter Server Appliance VMSA-2021-0028.3
VMware vRealize Automation 7.x
VMware vRealize Orchestrator 7.x
VMware NSX for Data Center for vSphere 6.x
VMware vRealize Log Insight 8.x
VMware vRealize Business for Cloud 7.x
Dell EMC Data Domain OS DSA-2021-274
 
Dell EMC Avamar DSA-2021-277
Dell EMC VxRail DSA-2021-265
VxBlock See vce6771 (requires customer login)
Dell EMC Unity Monitor Knowledge Baste Article 194414 for advisory publication: https://www.dell.com/support/kbdoc/en-uk/000194414/dell-response-to-apache-log4j-remote-code-execution-vulnerability
Dell EMC RecoverPoint for Virtual Machines DSA-2021-284

 Note: Dell EMC RecoverPoint for Virtual Machines plugin is not impacted by this advisory, all packages Update 1 through 8 are covered.

해결 방법 및 완화 방안

Follow workaround and mitigation information in articles and advisories linked in the Affected Products and Remediation section.

개정 내역

RevisionDateDescription
1.02021-12-14Initial Release
1.12021-12-17Updated Content

관련 정보

해당 제품

Enterprise Hybrid Cloud, Enterprise Hybrid Cloud

제품

Product Security Information
문서 속성
문서 번호: 000194490
문서 유형: Dell Security Advisory
마지막 수정 시간: 12 5월 2026
다른 Dell 사용자에게 질문에 대한 답변 찾기
지원 서비스
디바이스에 지원 서비스가 적용되는지 확인하십시오.