DSA-2025-251: Security Update for Dell VxFlex Ready Node and PowerFlex Custom Node Multiple Third-Party Component Vulnerabilities
Samenvatting: Dell VxFlex Ready Node and PowerFlex Custom Node remediation is available for multiple security vulnerabilities that could be exploited by malicious users to compromise the affected system. ...
Dit artikel is van toepassing op
Dit artikel is niet van toepassing op
Dit artikel is niet gebonden aan een specifiek product.
Niet alle productversies worden in dit artikel vermeld.
Impact
High
Gegevens
| Third-party Component | CVEs | More Information |
| Dell PowerEdge Server BIOS | CVE-2024-39279, CVE-2024-28047, CVE-2024-36293, CVE-2024-31068, CVE-2024-36347, CVE-2024-38796, CVE-2024-56161, CVE-2023-20599, CVE-2024-28956, CVE-2024-25571, CVE-2024-37020, CVE-2024-21859, CVE-2024-31155, CVE-2024-33607 | DSA-2024-381, DSA-2025-038, DSA-2025-040, DSA-2025-041, DSA-2025-042, DSA-2025-112 |
| iDRAC | CVE-2025-26466, CVE-2024-45490, CVE-2024-45491, CVE-2024-45492, CVE-2024-50602, CVE-2024-2961, CVE-2024-52533, CVE-2023-6780, CVE-2025-22396, CVE-2025-22397, CVE-2025-26482, CVE-2026-26945 | DSA-2025-145, DSA-2025-146, DSA-2025-046, DSA-2026-113 |
Getroffen producten en herstel
| Product | Software/Firmware | Affected Versions | Remediated Versions | Link |
| VxFlex Ready Node | Dell PowerEdge BIOS –14G R640, R740, R840 | Versions prior to 2.23.0 | Version 2.23.0 | Downloads (in case of upgrade using OME) |
| PowerFlex Custom Node | Dell PowerEdge BIOS –15G R650 and R750 | Versions prior to 1.16.2 | Version 1.16.2 | Downloads (in case of upgrade using OME) |
| PowerFlex Custom Node | Dell PowerEdge BIOS –15G AMD R6525 | Versions prior to 2.18.1 | Version 2.18.1 | Downloads (in case of upgrade using OME) |
| PowerFlex Custom Node | Dell PowerEdge BIOS –16G R660 and R760 | Versions prior to 2.5.4 | Version 2.5.4 | Downloads (in case of upgrade using OME) |
| PowerFlex Custom Node | Dell PowerEdge BIOS –16G AMD R6625 and R7625 | Versions prior to 1.11.2 | Version 1.11.2 | Downloads (in case of upgrade using OME) |
| Product | Software/Firmware | Affected Versions | Remediated Versions | Link |
| VxFlex Ready Node | Dell PowerEdge BIOS –14G R640, R740, R840 | Versions prior to 2.23.0 | Version 2.23.0 | Downloads (in case of upgrade using OME) |
| PowerFlex Custom Node | Dell PowerEdge BIOS –15G R650 and R750 | Versions prior to 1.16.2 | Version 1.16.2 | Downloads (in case of upgrade using OME) |
| PowerFlex Custom Node | Dell PowerEdge BIOS –15G AMD R6525 | Versions prior to 2.18.1 | Version 2.18.1 | Downloads (in case of upgrade using OME) |
| PowerFlex Custom Node | Dell PowerEdge BIOS –16G R660 and R760 | Versions prior to 2.5.4 | Version 2.5.4 | Downloads (in case of upgrade using OME) |
| PowerFlex Custom Node | Dell PowerEdge BIOS –16G AMD R6625 and R7625 | Versions prior to 1.11.2 | Version 1.11.2 | Downloads (in case of upgrade using OME) |
In the case of manual upgrade for VxFlex Ready Note, please see this link: https://www.dell.com/support/home/product-support/product/scaleio-ready-node--poweredge-14g/docs
In the case of manual upgrade for PowerFlex custom node, please see this link: https://www.dell.com/support/home/product-support/product/powerflex-custom-node/docs
Revisiegeschiedenis
| Revision | Date | Description |
| 1.0 | 2025-06-19 | Initial Release |
| 2.0 | 2025-07-15 | Added details for CVE-2024-28956, CVE-2024-25571, CVE-2024-37020, CVE-2024-21859, CVE-2024-31155 |
| 3.0 | 2025-11-24 | Added details for CVE-2024-33607, CVE-2025-26482 |
| 4.0 | 2026-03-18 | Added details for CVE-2026-26945 |
Verwante informatie
Juridische verklaring van afstand
Getroffen producten
PowerFlex custom node, PowerFlex custom node, PowerFlex custom node R650, PowerFlex custom node R6525, PowerFlex custom node R660, PowerFlex custom node R6625, PowerFlex custom node R750, PowerFlex custom node R760, PowerFlex custom node R7625
, PowerFlex custom node R860
...
Producten
VxFlex Ready Nodes, ScaleIO, VxFlex Ready Node, VxFlex Ready Node R640, VxFlex Ready Node R740xd, VxFlex Ready Node R840Artikeleigenschappen
Artikelnummer: 000334768
Artikeltype: Dell Security Advisory
Laatst aangepast: 17 mrt. 2026
Vind antwoorden op uw vragen via andere Dell gebruikers
Support Services
Controleer of uw apparaat wordt gedekt door Support Services.