DSA-2020-114: Dell BSAFE™ Micro Edition Suite Multiple Security Vulnerabilities

Samenvatting: Dell BSAFE Micro Edition Suite contains remediation for multiple vulnerabilities that could be exploited by malicious users to compromise the affected system.

Dit artikel is van toepassing op Dit artikel is niet van toepassing op Dit artikel is niet gebonden aan een specifiek product. Niet alle productversies worden in dit artikel vermeld.

Impact

High

Gegevens

CVE-2020-5360: Buffer Under-Read
Dell BSAFE Micro Edition Suite, versions prior to 4.5, are vulnerable to a Buffer Under-Read Vulnerability. An unauthenticated remote attacker could potentially exploit this vulnerability resulting in undefined behaviour, or a crash of the affected systems.
CVSS v3.1 Base Score: 7.5 (AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N)

CVE-2020-5359: Unchecked Return Value
Dell BSAFE Micro Edition Suite, versions prior to 4.5, are vulnerable to an Unchecked Return Value Vulnerability. An unauthenticated remote attacker could potentially exploit this vulnerability to modify and corrupt the encrypted data.
CVSS v3.1 Base Score: 5.8 (AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:L/A:N)

CVE-2020-5360: Buffer Under-Read
Dell BSAFE Micro Edition Suite, versions prior to 4.5, are vulnerable to a Buffer Under-Read Vulnerability. An unauthenticated remote attacker could potentially exploit this vulnerability resulting in undefined behaviour, or a crash of the affected systems.
CVSS v3.1 Base Score: 7.5 (AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N)

CVE-2020-5359: Unchecked Return Value
Dell BSAFE Micro Edition Suite, versions prior to 4.5, are vulnerable to an Unchecked Return Value Vulnerability. An unauthenticated remote attacker could potentially exploit this vulnerability to modify and corrupt the encrypted data.
CVSS v3.1 Base Score: 5.8 (AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:L/A:N)

Dell Technologies raadt aan dat alle klanten rekening houden met zowel de basisscore van CVSS als alle relevante tijdelijke en omgevingsscores die gevolgen kunnen hebben voor de mogelijke ernst van de specifieke beveiligingsproblemen.

Getroffen producten en herstel

Affected products:
Dell BSAFE Micro Edition Suite releases prior to 4.5.

Remediation:
The following releases contains resolutions to these vulnerabilities:

Dell BSAFE Micro Edition Suite 4.5

Dell recommends all customers upgrade at the earliest opportunity.
Affected products:
Dell BSAFE Micro Edition Suite releases prior to 4.5.

Remediation:
The following releases contains resolutions to these vulnerabilities:

Dell BSAFE Micro Edition Suite 4.5

Dell recommends all customers upgrade at the earliest opportunity.

Verwante informatie

Getroffen producten

BSAFE Micro Edition Suite
Artikeleigenschappen
Artikelnummer: 000181098
Artikeltype: Dell Security Advisory
Laatst aangepast: 15 dec. 2020
Vind antwoorden op uw vragen via andere Dell gebruikers
Support Services
Controleer of uw apparaat wordt gedekt door Support Services.