DSA-2026-255: Security Update for Cloudlink Multiple Vulnerabilities

Resumo: Cloudlink remediation is available for multiple security vulnerabilities that could be exploited by malicious users to compromise the affected system.

Este artigo aplica-se a Este artigo não se aplica a Este artigo não está vinculado a nenhum produto específico. Nem todas as versões do produto estão identificadas neste artigo.

Impacto

Medium

Dados

Proprietary Code CVEs Description CVSS Base Score CVSS Vector String
CVE-2026-41118 Dell CloudLink, version(s) 8.2, contain(s) an Improper Access Control vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of privileges. 5.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:LThis hyperlink is taking you to a website outside of Dell Technologies.
CVE-2026-46736 Dell CloudLink, version(s) CloudLink 8.1 and later versions, contain(s) a Missing Authorization vulnerability in the CloudLink Cluster. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access and denial of service. 7.1 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:HThis hyperlink is taking you to a website outside of Dell Technologies.
Proprietary Code CVEs Description CVSS Base Score CVSS Vector String
CVE-2026-41118 Dell CloudLink, version(s) 8.2, contain(s) an Improper Access Control vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of privileges. 5.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:LThis hyperlink is taking you to a website outside of Dell Technologies.
CVE-2026-46736 Dell CloudLink, version(s) CloudLink 8.1 and later versions, contain(s) a Missing Authorization vulnerability in the CloudLink Cluster. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access and denial of service. 7.1 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:HThis hyperlink is taking you to a website outside of Dell Technologies.
A Dell Technologies recomenda que todos os clientes levem em consideração a pontuação base CVSS e as pontuações temporais e ambientais pertinentes que possam afetar a gravidade potencial associada a uma vulnerabilidade de segurança específica.

Produtos afetados e soluções

Product Affected Versions Remediated Versions Link
Cloudlink for PowerFlex Rack Versions prior to 8.3.1 Version 8.3.1 or later PowerFlex Rack Drivers & Downloads
Cloudlink for PowerFlex Appliance Versions prior to 8.3.1 Version 8.3.1 or later PowerFlex Appliance Drivers & Downloads
Cloudlink for PowerFlex Software Versions prior to 8.3.1 Version 8.3.1 or later PowerFlex Software Drivers & Downloads
Product Affected Versions Remediated Versions Link
Cloudlink for PowerFlex Rack Versions prior to 8.3.1 Version 8.3.1 or later PowerFlex Rack Drivers & Downloads
Cloudlink for PowerFlex Appliance Versions prior to 8.3.1 Version 8.3.1 or later PowerFlex Appliance Drivers & Downloads
Cloudlink for PowerFlex Software Versions prior to 8.3.1 Version 8.3.1 or later PowerFlex Software Drivers & Downloads

Histórico de revisão

RevisionDateDescription
1.02026-06-18Initial release

Informações relacionadas

Produtos afetados

CloudLink
Propriedades do artigo
Número do artigo: 000477672
Tipo de artigo: Dell Security Advisory
Último modificado: 18 jun. 2026
Encontre as respostas de outros usuários da Dell para suas perguntas.
Serviços de suporte
Verifique se o dispositivo está coberto pelos serviços de suporte.