DSA-2023-384: Security Update for Dell Precision Rack Multiple Tianocore EDK2 Vulnerabilities

Samenvatting: Dell Precision Rack remediation is available for multiple Tianocore EDK2 vulnerabilities that could be exploited by malicious users to compromise the affected system.

Dit artikel is van toepassing op Dit artikel is niet van toepassing op Dit artikel is niet gebonden aan een specifiek product. Niet alle productversies worden in dit artikel vermeld.

Impact

High

Meer details

The Affected Products and Remediation table above may not be a comprehensive list of all affected supported versions and may be updated as more information becomes available.

Gegevens

Third-Party Component CVE(s) More information
Tianocore EDK2 CVE-2023-45229, CVE-2023-45230, CVE-2023-45231, CVE-2023-45232, CVE-2023-45233, CVE-2023-45234, CVE-2023-45235, CVE-2023-45236, CVE-2023-45237 See NVD (https://nvd.nist.gov/This hyperlink is taking you to a website outside of Dell Technologies.) or the following advisories for individual scores for each CVE

Dell Technologies raadt aan dat alle klanten rekening houden met zowel de basisscore van CVSS als alle relevante tijdelijke en omgevingsscores die gevolgen kunnen hebben voor de mogelijke ernst van de specifieke beveiligingsproblemen.

Getroffen producten en herstel

Product Software/Firmware Affected Versions Remediated Versions BIOS Release Date Link
Precision 7920 Rack BIOS Versions prior to 2.20.1 Version 2.20.1 or later 11/30/2023 Go to the Drivers & Downloads site for updates.
7920 XL Rack BIOS Versions prior to 2.20.1 Version 2.20.1 or later 11/30/2023 Go to the Drivers & Downloads site for updates.
Precision 7910 Rack BIOS Versions prior to 2.18.0 Version 2.18.0 or later 12/6/2023 Go to the Drivers & Downloads site for updates.
Precision 7910 XL Rack BIOS Versions prior to 2.18.0 Version 2.18.0 or later 12/6/2023 Go to the Drivers & Downloads site for updates.
 Precision 7960 Rack BIOS Versions prior to 2.0.0 Version BIOS 2.0.0 or later 01/23/2024 Go to the Drivers & Downloads site for updates.
Precision 7960 XL Rack BIOS Versions prior to 2.0.0 Version BIOS 2.0.0 or later 01/23/2024 Go to the Drivers & Downloads site for updates.
Product Software/Firmware Affected Versions Remediated Versions BIOS Release Date Link
Precision 7920 Rack BIOS Versions prior to 2.20.1 Version 2.20.1 or later 11/30/2023 Go to the Drivers & Downloads site for updates.
7920 XL Rack BIOS Versions prior to 2.20.1 Version 2.20.1 or later 11/30/2023 Go to the Drivers & Downloads site for updates.
Precision 7910 Rack BIOS Versions prior to 2.18.0 Version 2.18.0 or later 12/6/2023 Go to the Drivers & Downloads site for updates.
Precision 7910 XL Rack BIOS Versions prior to 2.18.0 Version 2.18.0 or later 12/6/2023 Go to the Drivers & Downloads site for updates.
 Precision 7960 Rack BIOS Versions prior to 2.0.0 Version BIOS 2.0.0 or later 01/23/2024 Go to the Drivers & Downloads site for updates.
Precision 7960 XL Rack BIOS Versions prior to 2.0.0 Version BIOS 2.0.0 or later 01/23/2024 Go to the Drivers & Downloads site for updates.

Revisiegeschiedenis

RevisionDateDescription
1.02023-01-16Initial Release
2.02024-01-23Updated Affected Products and Remediation section: Final Platform list update

Verwante informatie

Getroffen producten

R7910 XL, 7920 XL Rack, Precision 7960 XL Rack, Precision 7920 Rack, Precision Rack 7910, Precision 7960 Rack
Artikeleigenschappen
Artikelnummer: 000218418
Artikeltype: Dell Security Advisory
Laatst aangepast: 23 jan. 2024
Vind antwoorden op uw vragen via andere Dell gebruikers
Support Services
Controleer of uw apparaat wordt gedekt door Support Services.