DSA-2025-023: Security Update for Dell Connectrix MDS Cisco Bootloader Vulnerability
Resumo: Dell Connectrix MDS-Series remediation is available for the Bootloader that could be exploited by malicious users to compromise the affected system.
Este artigo aplica-se a
Este artigo não se aplica a
Este artigo não está vinculado a nenhum produto específico.
Nem todas as versões do produto estão identificadas neste artigo.
Impacto
Medium
Dados
| Third-party Component | CVEs | More Information |
| Bootloader | CVE-2024-20397 | CVE-2024-20397 |
Produtos afetados e soluções
| Product | Software/Firmware | Affected Versions | Remediated Versions | Link |
| Connectrix MDS-Series | NX-OS | Versions prior to 9.4(2) | Versions 9.4(2a) or later | https://www.dell.com/support/home/product-support/product/connectrix-mds-series-hardware/drivers |
| Product | Software/Firmware | Affected Versions | Remediated Versions | Link |
| Connectrix MDS-Series | NX-OS | Versions prior to 9.4(2) | Versions 9.4(2a) or later | https://www.dell.com/support/home/product-support/product/connectrix-mds-series-hardware/drivers |
Soluções temporárias e atenuações
| CVE ID | Workaround and Mitigation |
| CVE-2024-20397 | For Cisco MDS and Nexus standalone platforms, if the device was not previously upgraded by using the install all CLI command, the BIOS might not have been upgraded. Even if customers are running a fixed Cisco NX-OS Software release, they are advised to check the BIOS version and use the install all command to complete the BIOS upgrade, if applicable. So even if the device is running the fixed release we recommend checking the actual BIOS version to be sure. |
Histórico de revisão
| Revision | Date | Description |
| 1.0 | 2025-01-06 | Initial Release |
Informações relacionadas
Aviso de isenção legal
Produtos afetados
Connectrix MDS-9124V, Connectrix MDS-9132T, Connectrix MDS-9148S, Connectrix MDS-9148T, Connectrix MDS-9148V, Connectrix MDS-9220i, Connectrix MDS-9250i, Connectrix MDS-9396S, Connectrix MDS-9396S PSI, Connectrix MDS-9396T, Connectrix MDS-9396V
, Connectrix MDS-9706, Connectrix MDS-9706-V2, Connectrix MDS-9710, Connectrix MDS-9710-V2, Connectrix MDS-9718, Connectrix MDS-9718-V3, Connectrix MDS-Series Hardware, Connectrix MDS 9132T, Connectrix MDS 9148S, Connectrix MDS 9148T, Connectrix MDS 9396S, Connectrix MDS 9396T
...
Propriedades do artigo
Número do artigo: 000261082
Tipo de artigo: Dell Security Advisory
Último modificado: 06 jan. 2025
Encontre as respostas de outros usuários da Dell para suas perguntas.
Serviços de suporte
Verifique se o dispositivo está coberto pelos serviços de suporte.