DSA-2026-244: Security Update for Dell Automation Platform for Multiple Third-Party Component Vulnerabilities

요약: Dell Automation Platform remediation is available for multiple security vulnerabilities that could be exploited by malicious users to compromise the affected system.

이 문서는 다음에 적용됩니다. 이 문서는 다음에 적용되지 않습니다. 이 문서는 특정 제품과 관련이 없습니다. 모든 제품 버전이 이 문서에 나와 있는 것은 아닙니다.

영향

High

세부 정보

Third-party Component CVES More Information
Keycloak CVE-2026-3047, CVE-2026-3009, CVE-2026-2603, CVE-2026-2092, CVE-2025-13467, CVE-2026-2575, CVE-2026-2733, CVE-2026-1190, CVE-2025-5416 https://nvd.nist.gov/vuln/search This hyperlink is taking you to a website outside of Dell Technologies.
OpenSSL CVE-2025-15467 https://nvd.nist.gov/vuln/search This hyperlink is taking you to a website outside of Dell Technologies.
GnuPG CVE-2026-24882 https://nvd.nist.gov/vuln/search This hyperlink is taking you to a website outside of Dell Technologies.
Python cryptography library CVE-2026-26007 https://nvd.nist.gov/vuln/search This hyperlink is taking you to a website outside of Dell Technologies.
systemd CVE-2026-4105 https://nvd.nist.gov/vuln/search This hyperlink is taking you to a website outside of Dell Technologies.
SUSE CVE-2026-31431, CVE-2026-43500, CVE-2026-46300, CVE-2026-46333 https://www.suse.com/ This hyperlink is taking you to a website outside of Dell Technologies.

 

Dell Technologies는 모든 고객이 CVSS 기본 점수와 관련 임시 및 환경 점수를 모두 고려할 것을 권장합니다. 이 경우 특정 보안 취약성과 관련된 잠재적인 심각도에 영향을 미칠 수 있습니다.

영향을 받는 제품 및 문제 해결

Product Affected Versions Remediated Versions Link
Dell Automation Platform Versions prior to 2.1.0.0 Version 2.1.0.0 or later https://www.dell.com/support/product-details/product/dell-automation-platform-components/drivers

 

Product Affected Versions Remediated Versions Link
Dell Automation Platform Versions prior to 2.1.0.0 Version 2.1.0.0 or later https://www.dell.com/support/product-details/product/dell-automation-platform-components/drivers

 

해결 방법 및 완화 방안

CVE ID Workaround and Mitigation
CVE-2026-31431

For customers who configure general Linux shell access on DAP-Server nodes or want to implement defense-in-depth measures, Dell recommends adding a filter to block dynamic loading of the affected kernel module.

1.    Disable Vulnerable Kernel Module Loading From the DAP-Server Linux shell as system admin, add the following filter to the system configuration:

#Restrict loading of the affected kernel module echo "install algif_aead /bin/false" | sudo tee /etc/modprobe.d/disable-algif-aead.conf

After applying the configuration, update module preferences: sudo depmod –a 

2.    Verification To verify the module is blocked:

#Check if the module is active lsmod | grep algif_aead

#If necessary, unload the module if it is currently loaded sudo modprobe -r algif_aead

#Attempt to load the module (should fail) sudo modprobe algif_aead

#Expected output: modprobe: ERROR: ../libkmod/libkmod-module.c:1047 command_do() Error running install command '/bin/false' for module algif_aead: retcode 1

Persistence

The configuration will persist across system reboots. No additional steps are required.

 

개정 내역

RevisionDateDescription
1.02026-06-05Initial Release
2.02026-07-14

Updated the following tables with the Version 2.1.0.0 release

  • Third Party Components
  • Affected Products and Remediation 

 

관련 정보

해당 제품

Dell Automation Platform, Dell Automation Platform Components
문서 속성
문서 번호: 000473583
문서 유형: Dell Security Advisory
마지막 수정 시간: 14 7월 2026
다른 Dell 사용자에게 질문에 대한 답변 찾기
지원 서비스
디바이스에 지원 서비스가 적용되는지 확인하십시오.