DSA-2023-411: Security Update for Dell PowerScale OneFS for SupportAssist Vulnerabilities
Samenvatting: Dell PowerScale OneFS remediation is available for multiple security vulnerabilities that could be exploited by malicious users to compromise the affected system.
Dit artikel is van toepassing op
Dit artikel is niet van toepassing op
Dit artikel is niet gebonden aan een specifiek product.
Niet alle productversies worden in dit artikel vermeld.
Impact
Critical
Gegevens
| Third-Party Component | CVEs | CVSS Vector String |
|---|---|---|
| SupportAssist | CVE-2022-37434, CVE-2022-37454, CVE-2022-1292, CVE-2022-40674, CVE-2022-2068, CVE-2022-35737, CVE-2022-43680, CVE-2022-35737, CVE-2022-42919, CVE-2015-20107, CVE-2022-45061, CVE-2020-10735, CVE-2021-28861, CVE-2020-25659, CVE-2023-0215 | See NVD link below for individual scores for each CVE. http://nvd.nist.gov/ |
| Third-Party Component | CVEs | CVSS Vector String |
|---|---|---|
| SupportAssist | CVE-2022-37434, CVE-2022-37454, CVE-2022-1292, CVE-2022-40674, CVE-2022-2068, CVE-2022-35737, CVE-2022-43680, CVE-2022-35737, CVE-2022-42919, CVE-2015-20107, CVE-2022-45061, CVE-2020-10735, CVE-2021-28861, CVE-2020-25659, CVE-2023-0215 | See NVD link below for individual scores for each CVE. http://nvd.nist.gov/ |
Getroffen producten en herstel
| CVEs Addressed | Product | Affected Versions | Remediated Versions | Link |
|---|---|---|---|---|
| CVE-2022-37434, CVE-2022-37454, CVE-2022-1292, CVE-2022-40674, CVE-2022-2068, CVE-2022-35737, CVE-2022-43680, CVE-2022-35737, CVE-2022-42919, CVE-2015-20107, CVE-2022-45061, CVE-2020-10735, CVE-2021-28861, CVE-2020-25659, CVE-2023-0215 | PowerScale OneFS | Version 9.5.0.0 through 9.5.0.5 | Version 9.5.0.6 or later. | PowerScale OneFS Downloads Area |
| CVEs Addressed | Product | Affected Versions | Remediated Versions | Link |
|---|---|---|---|---|
| CVE-2022-37434, CVE-2022-37454, CVE-2022-1292, CVE-2022-40674, CVE-2022-2068, CVE-2022-35737, CVE-2022-43680, CVE-2022-35737, CVE-2022-42919, CVE-2015-20107, CVE-2022-45061, CVE-2020-10735, CVE-2021-28861, CVE-2020-25659, CVE-2023-0215 | PowerScale OneFS | Version 9.5.0.0 through 9.5.0.5 | Version 9.5.0.6 or later. | PowerScale OneFS Downloads Area |
Tijdelijke oplossingen en risicobeperking
| CVEs | Workaround |
|---|---|
| CVE-2022-37434, CVE-2022-37454, CVE-2022-1292, CVE-2022-40674, CVE-2022-2068, CVE-2022-35737, CVE-2022-43680, CVE-2022-35737, CVE-2022-42919, CVE-2015-20107, CVE-2022-45061, CVE-2020-10735, CVE-2021-28861, CVE-2020-25659, CVE-2023-0215 | Disable SupportAssist on PowerScale version 9.5 using the command below: |
Revisiegeschiedenis
| Revision | Date | Description |
|---|---|---|
| 1.0 | 2023-11-06 | Initial Release |
| 2.0 | 2023-11-22 | Updated content to point to the relevant administrator's guides. |
Verwante informatie
Juridische verklaring van afstand
Getroffen producten
PowerScale OneFSArtikeleigenschappen
Artikelnummer: 000219104
Artikeltype: Dell Security Advisory
Laatst aangepast: 19 sep. 2025
Vind antwoorden op uw vragen via andere Dell gebruikers
Support Services
Controleer of uw apparaat wordt gedekt door Support Services.