DSA-2025-164: Security Update for Dell VxFlex Ready Node and PowerFlex Custom Node Multiple Third-Party Component Vulnerabilities

Samenvatting: Dell VxFlex Ready Node and PowerFlex Custom Node remediation is available for multiple security vulnerabilities that could be exploited by malicious users to compromise the affected system. ...

Dit artikel is van toepassing op Dit artikel is niet van toepassing op Dit artikel is niet gebonden aan een specifiek product. Niet alle productversies worden in dit artikel vermeld.

Impact

High

Gegevens

Third-party Component

CVEs

More Information

Dell PowerEdge Server BIOS

CVE-2024-21853, CVE-2024-21944, CVE-2024-27457, CVE-2023-31342, CVE-2023-31343, CVE-2023-31345, CVE-2024-21924, CVE-2024-21925, CVE-2023-20582, CVE-2023-20581

DSA-2024-383, DSA-2024-404, DSA-2024-385, DSA-2025-085

iDRAC

CVE-2023-52340, CVE-2024-42154, CVE-2026-26948

DSA-2024-460, DSA-2026-113

Intel Adapters 

CVE-2024-24852, CVE-2024-36274

DSA-2025-042

 

Dell Technologies raadt aan dat alle klanten rekening houden met zowel de basisscore van CVSS als alle relevante tijdelijke en omgevingsscores die gevolgen kunnen hebben voor de mogelijke ernst van de specifieke beveiligingsproblemen.

Getroffen producten en herstel

Product

Software/Firmware

Affected Versions

Remediated Versions

Link

VxFlex Ready Node

Dell PowerEdge BIOS –14G R640, R740, R840

 

Versions prior to 2.22.2

Version 2.22.2 or later

Downloads (in case of upgrade using OME)

PowerFlex Custom Node

Dell PowerEdge BIOS –15G R650 and R750

Versions prior to 1.15.2

Version 1.15.2 or later

Downloads (in case of upgrade using OME)

PowerFlex Custom Node

Dell PowerEdge BIOS –15G AMD R6525

Versions prior to 2.17.4

Version 2.17.4 or later

Downloads (in case of upgrade using OME)

PowerFlex Custom Node

Dell PowerEdge BIOS –16G R660 and R760

Versions prior to 2.4.4

Version 2.4.4 or later

Downloads (in case of upgrade using OME)

PowerFlex Custom Node

Dell PowerEdge BIOS –16G AMD R6625 and R7625

Versions prior to 1.10.6

Version 1.10.6 or later

Downloads (in case of upgrade using OME)

 

Product

Software/Firmware

Affected Versions

Remediated Versions

Link

VxFlex Ready Node

Dell PowerEdge BIOS –14G R640, R740, R840

 

Versions prior to 2.22.2

Version 2.22.2 or later

Downloads (in case of upgrade using OME)

PowerFlex Custom Node

Dell PowerEdge BIOS –15G R650 and R750

Versions prior to 1.15.2

Version 1.15.2 or later

Downloads (in case of upgrade using OME)

PowerFlex Custom Node

Dell PowerEdge BIOS –15G AMD R6525

Versions prior to 2.17.4

Version 2.17.4 or later

Downloads (in case of upgrade using OME)

PowerFlex Custom Node

Dell PowerEdge BIOS –16G R660 and R760

Versions prior to 2.4.4

Version 2.4.4 or later

Downloads (in case of upgrade using OME)

PowerFlex Custom Node

Dell PowerEdge BIOS –16G AMD R6625 and R7625

Versions prior to 1.10.6

Version 1.10.6 or later

Downloads (in case of upgrade using OME)

 

In the case of manual upgrade for VxFlex Ready Note, please see this link: https://www.dell.com/support/home/en-us/product-support/product/scaleio-ready-node--poweredge-14g/docs

In the case of manual upgrade for PowerFlex custom node, please see this link: https://www.dell.com/support/home/product-support/product/powerflex-custom-node/docs

Revisiegeschiedenis

RevisionDateDescription
1.02024-04-03Initial Release
2.02026-03-18Added details for CVE-2026-26948  

Verwante informatie

Getroffen producten

VxFlex Ready Nodes, PowerFlex custom node, ScaleIO, PowerFlex custom node, PowerFlex custom node R650, PowerFlex custom node R6525, PowerFlex custom node R660, PowerFlex custom node R6625, PowerFlex custom node R750, PowerFlex custom node R760 , PowerFlex custom node R7625, PowerFlex custom node R860, VxFlex Ready Node, VxFlex Ready Node R640, VxFlex Ready Node R740xd, VxFlex Ready Node R840 ...
Artikeleigenschappen
Artikelnummer: 000303519
Artikeltype: Dell Security Advisory
Laatst aangepast: 17 mrt. 2026
Vind antwoorden op uw vragen via andere Dell gebruikers
Support Services
Controleer of uw apparaat wordt gedekt door Support Services.