DSA-2022-137: Dell VxRail Security Update for Multiple Third-Party Component Vulnerabilities

摘要: Dell VxRail remediation is available for multiple security vulnerabilities that may be exploited by malicious users to compromise the affected system.

本文适用于 本文不适用于 本文并非针对某种特定的产品。 本文并非包含所有产品版本。

影响

Critical

详情

Third-party Component CVEs More Information
Spring CVE-2022-22963 Not impacted by CVE-2022-22965
iDRAC CVE-2022-24422 See Dell article 199267, DSA-2022-068: Dell iDRAC9 Security Update for an Improper Authentication Vulnerability for more details
CVE-2021-3712 See Dell article 194038, DSA-2021-259: Dell iDRAC Security Update for Multiple Security Vulnerabilities for more details
CVE-2021-36347
CVE-2021-36348
PowerEdge Intel BIOS
(R640, R740, R840, C6420, XR2)
CVE-2019-14584 See Dell article 198065, DSA-2022-088: Dell PowerEdge Server BIOS Security Update for Multiple Tianocore EDK2 Vulnerabilities for more details
CVE-2021-28210
CVE-2021-28211
CVE-2021-0091 See Dell article 196063, DSA-2022-040: Dell Client Security Update for Intel February 2022 Vulnerabilities for more details
CVE-2021-0119
CVE-2021-0147
CVE-2021-0060 See Dell article 196007, DSA-2022-036: PowerEdge Server Security Update for Intel February 2022 Security Advisory Release for more details
CVE-2021-0092
CVE-2021-0093
CVE-2021-0099
CVE-2021-0103
CVE-2021-0107
CVE-2021-0111
CVE-2021-0114
CVE-2021-0115
CVE-2021-0116
CVE-2021-0117
CVE-2021-0118
CVE-2021-0124
CVE-2021-0125
CVE-2021-0127
Third-party Component CVEs More Information
Spring CVE-2022-22963 Not impacted by CVE-2022-22965
iDRAC CVE-2022-24422 See Dell article 199267, DSA-2022-068: Dell iDRAC9 Security Update for an Improper Authentication Vulnerability for more details
CVE-2021-3712 See Dell article 194038, DSA-2021-259: Dell iDRAC Security Update for Multiple Security Vulnerabilities for more details
CVE-2021-36347
CVE-2021-36348
PowerEdge Intel BIOS
(R640, R740, R840, C6420, XR2)
CVE-2019-14584 See Dell article 198065, DSA-2022-088: Dell PowerEdge Server BIOS Security Update for Multiple Tianocore EDK2 Vulnerabilities for more details
CVE-2021-28210
CVE-2021-28211
CVE-2021-0091 See Dell article 196063, DSA-2022-040: Dell Client Security Update for Intel February 2022 Vulnerabilities for more details
CVE-2021-0119
CVE-2021-0147
CVE-2021-0060 See Dell article 196007, DSA-2022-036: PowerEdge Server Security Update for Intel February 2022 Security Advisory Release for more details
CVE-2021-0092
CVE-2021-0093
CVE-2021-0099
CVE-2021-0103
CVE-2021-0107
CVE-2021-0111
CVE-2021-0114
CVE-2021-0115
CVE-2021-0116
CVE-2021-0117
CVE-2021-0118
CVE-2021-0124
CVE-2021-0125
CVE-2021-0127
Dell Technologies 建议所有客户考虑 CVSS 基本分数以及任何相关的时间和环境分数,这可能会影响与特定安全漏洞相关的潜在严重程度。

受影响的产品和补救措施

Product Affected Versions Updated Versions
Dell VxRail 4.5.x versions before 4.5.480 4.5.480

Product Affected Versions Updated Versions
Dell VxRail 4.5.x versions before 4.5.480 4.5.480

修订历史记录

RevisionDateDescription
1.02022-05-26Initial Release
1.12022-06-01Removed CVE-2022-24423

相关信息

受影响的产品

VxRail, CloudArray Virtual Edition for VxRail Appliance, Product Security Information, VMWare Cloud on Dell EMC VxRail E560F, VMWare Cloud on Dell EMC VxRail E560N, VxRail 460 and 470 Nodes, VxRail Appliance Family, VxRail Appliance Series , VxRail G410, VxRail G Series Nodes, VxRail D Series Nodes, VxRail D560, VxRail D560F, VxRail E Series Nodes, VxRail E460, VxRail E560, VxRail E560F, VxRail E560N, VxRail E660, VxRail E660F, VxRail E660N, VxRail E665F, VxRail E665N, VxRail G560, VxRail G560F, VxRail Gen2 Hardware, VxRail P Series Nodes, VxRail P470, VxRail P570, VxRail P570F, VxRail P580N, VxRail P670F, VxRail P670N, VxRail P675F, VxRail P675N, VxRail S Series Nodes, VxRail S470, VxRail S570, VxRail S670, VxRail Software, VxRail V Series Nodes, VxRail V470, VxRail V570, VxRail V570F, VXRAIL V670F ...
文章属性
文章编号: 000200100
文章类型: Dell Security Advisory
上次修改时间: 19 9月 2025
从其他戴尔用户那里查找问题的答案
支持服务
检查您的设备是否在支持服务涵盖的范围内。