DSA-2025-260: Dell Secure Connect Gateway Security Update for Multiple Third-Party Component Vulnerabilities

摘要: Dell Secure Connect Gateway contains remediation for multiple vulnerabilities that could be exploited by malicious users to compromise the affected system.

本文适用于 本文不适用于 本文并非针对某种特定的产品。 本文并非包含所有产品版本。

影响

Critical

详情

Third-Party Component CVEs More information
apache2-mod_apparmor-3.1.7-150600.5.9.1
apparmor-parser-3.1.7-150600.5.9.1
libapparmor1-3.1.7-150600.5.9.1
pam-1.3.0-150000.6.76.1
CVE-2024-10041 https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.
augeas-1.14.1-150600.3.3.1
augeas-lenses-1.14.1-150600.3.3.1
libaugeas0-1.14.1-150600.3.3.1
libfa1-1.14.1-150600.3.3.1
CVE-2025-2588 https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.
commons-beanutils-1.11.0 CVE-2025-48734 https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.
containerd-1.7.27-150000.123.1 CVE-2024-40635 https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.
docker-27.5.1_ce-150000.218.1 CVE-2024-29018, CVE-2025-22868, CVE-2025-22869 https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.
glib2-tools-2.78.6-150600.4.11.1
libgio-2_0-0-2.78.6-150600.4.11.1
libglib-2_0-0-2.78.6-150600.4.11.1
libgmodule-2_0-0-2.78.6-150600.4.11.1
libgobject-2_0-0-2.78.6-150600.4.11.1
CVE-2025-3360 https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.
glibc-2.38-150600.14.32.1
glibc-locale-2.38-150600.14.32.1
glibc-locale-base-2.38-150600.14.32.1
CVE-2025-0395, CVE-2025-4802 https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.
grub2-2.12-150600.8.27.1
grub2-i386-pc-2.12-150600.8.27.1.noarch
grub2-x86_64-efi-2.12-150600.8.27.1.noarch
CVE-2025-4382 https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.
iputils-20221126-150500.3.11.1 CVE-2025-47268 https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.
kernel-default-base-6.4.0-150600.23.50.1.150600.12.22.1

CVE-2023-52831, CVE-2023-52924, CVE-2023-52925, CVE-2023-52926, CVE-2023-52927, CVE-2024-26634, CVE-2024-26708, CVE-2024-26810, CVE-2024-26873, CVE-2024-35826, CVE-2024-35910, CVE-2024-38606, CVE-2024-40980, CVE-2024-41005, CVE-2024-41055, CVE-2024-41077, CVE-2024-41149, CVE-2024-42307, CVE-2024-43820, CVE-2024-44974, CVE-2024-45009, CVE-2024-45010, CVE-2024-46736, CVE-2024-46782, CVE-2024-46796, CVE-2024-47408, CVE-2024-47794, CVE-2024-49571, CVE-2024-49924, CVE-2024-49940, CVE-2024-49994, CVE-2024-50029, CVE-2024-50036, CVE-2024-50056, CVE-2024-50085, CVE-2024-50126, CVE-2024-50140, CVE-2024-50152, CVE-2024-50185, CVE-2024-50290, CVE-2024-50294, CVE-2024-52559, CVE-2024-53057, CVE-2024-53063, CVE-2024-53123, CVE-2024-53140, CVE-2024-53147, CVE-2024-53163, CVE-2024-53176, CVE-2024-53177, CVE-2024-53178, CVE-2024-53226, CVE-2024-53680, CVE-2024-54683, CVE-2024-56568, CVE-2024-56579, CVE-2024-56633, CVE-2024-56638, CVE-2024-56640, CVE-2024-56647, CVE-2024-56702, CVE-2024-56703, CVE-2024-56718, CVE-2024-56719, CVE-2024-56720, CVE-2024-56751, CVE-2024-56758, CVE-2024-56770, CVE-2024-57807, CVE-2024-57834, CVE-2024-57889, CVE-2024-57900, CVE-2024-57947, CVE-2024-57948, CVE-2024-57973, CVE-2024-57974, CVE-2024-57978, CVE-2024-57979, CVE-2024-57980, CVE-2024-57981, CVE-2024-57986, CVE-2024-57990, CVE-2024-57993, CVE-2024-57994, CVE-2024-57996, CVE-2024-57997, CVE-2024-57999, CVE-2024-58002, CVE-2024-58005, CVE-2024-58006, CVE-2024-58007, CVE-2024-58009, CVE-2024-58011, CVE-2024-58012, CVE-2024-58013, CVE-2024-58014, CVE-2024-58017, CVE-2024-58019, CVE-2024-58020, CVE-2024-58034, CVE-2024-58051, CVE-2024-58052, CVE-2024-58054, CVE-2024-58055, CVE-2024-58056, CVE-2024-58057, CVE-2024-58058, CVE-2024-58061, CVE-2024-58063, CVE-2024-58069, CVE-2024-58072, CVE-2024-58076, CVE-2024-58078, CVE-2024-58079, CVE-2024-58080, CVE-2024-58083, CVE-2024-58085, CVE-2024-58086, CVE-2025-21631, CVE-2025-21635, CVE-2025-21636, CVE-2025-21637, CVE-2025-21638, CVE-2025-21639, CVE-2025-21640, CVE-2025-21647, CVE-2025-21659, CVE-2025-21665, CVE-2025-21667, CVE-2025-21668, CVE-2025-21671, CVE-2025-21673, CVE-2025-21680, CVE-2025-21681, CVE-2025-21684, CVE-2025-21687, CVE-2025-21688, CVE-2025-21689, CVE-2025-21690, CVE-2025-21692, CVE-2025-21693, CVE-2025-21697, CVE-2025-21699, CVE-2025-21700, CVE-2025-21701, CVE-2025-21703, CVE-2025-21704, CVE-2025-21705, CVE-2025-21706, CVE-2025-21708, CVE-2025-21711, CVE-2025-21714, CVE-2025-21715, CVE-2025-21716, CVE-2025-21718, CVE-2025-21719, CVE-2025-21723, CVE-2025-21724, CVE-2025-21725, CVE-2025-21726, CVE-2025-21727, CVE-2025-21728, CVE-2025-21731, CVE-2025-21732, CVE-2025-21733, CVE-2025-21734, CVE-2025-21735, CVE-2025-21736, CVE-2025-21738, CVE-2025-21739, CVE-2025-21741, CVE-2025-21742, CVE-2025-21743, CVE-2025-21744, CVE-2025-21745, CVE-2025-21749, CVE-2025-21750, CVE-2025-21753, CVE-2025-21754, CVE-2025-21756, CVE-2025-21759, CVE-2025-21760, CVE-2025-21761, CVE-2025-21762, CVE-2025-21763, CVE-2025-21764, CVE-2025-21765, CVE-2025-21766, CVE-2025-21767, CVE-2025-21772, CVE-2025-21773, CVE-2025-21775, CVE-2025-21776, CVE-2025-21779, CVE-2025-21780, CVE-2025-21781, CVE-2025-21782, CVE-2025-21784, CVE-2025-21785, CVE-2025-21790, CVE-2025-21791, CVE-2025-21793, CVE-2025-21794, CVE-2025-21795, CVE-2025-21796, CVE-2025-21799, CVE-2025-21802, CVE-2025-21804, CVE-2025-21810, CVE-2025-21815, CVE-2025-21819, CVE-2025-21820, CVE-2025-21821, CVE-2025-21823, CVE-2025-21825, CVE-2025-21828, CVE-2025-21829, CVE-2025-21830, CVE-2025-21831, CVE-2025-21832, CVE-2025-21835, CVE-2025-21838, CVE-2025-21844, CVE-2025-21846, CVE-2025-21847, CVE-2025-21848, CVE-2025-21850, CVE-2025-21855, CVE-2025-21856, CVE-2025-21857, CVE-2025-21858, CVE-2025-21859, CVE-2025-21861, CVE-2025-21862, CVE-2025-21864, CVE-2025-21865, CVE-2025-21866, CVE-2025-21869, CVE-2025-21870, CVE-2025-21871, CVE-2025-21876, CVE-2025-21877, CVE-2025-21878, CVE-2025-21883, CVE-2025-21885, CVE-2025-21886, CVE-2025-21888, CVE-2025-21890, CVE-2025-21891, CVE-2025-21892

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.
libprocps8-3.3.17-150000.7.42.1

CVE-2023-4016

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

libpython3_6m1_0 - 3.6.15-150300.10.84.1

python3-base-3.6.15-150300.10.84.1

CVE-2024-11168

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

libX11-6-1.8.7-150600.3.3.1
libX11-data-1.8.7-150600.3.3.1.noarch

CVE-2025-26597

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

libexpat1-2.7.1-150400.3.28.1

CVE-2023-52426, CVE-2024-8176

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

libfreetype6-2.10.4-150000.4.22.1

CVE-2025-27363

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

libgnutls30-3.8.3-150600.4.6.2

CVE-2024-12243

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

liblzma5-5.4.1-150600.3.3.1
xz-5.4.1-150600.3.3.1

CVE-2025-31115

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

libopenssl-3-fips-provider-3.1.4-150600.5.27.1

CVE-2023-3446, CVE-2023-3817, CVE-2023-5678

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

libpq5-17.5-150600.13.13.1
postgresql17-17.5-150600.13.13.1
postgresql17-server-17.5-150600.13.13.1

CVE-2025-1094, CVE-2025-4207

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

libpython3_11-1_0-3.11.11-150600.3.21.1
libpython3_12-1_0-3.12.9-150600.3.21.1
python311-base-3.11.11-150600.3.21.1
python311-tools-3.11.11-150600.3.21.1
python312-3.12.9-150600.3.21.1
python312-base-3.12.9-150600.3.21.1

CVE-2025-1795

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

libruby2_5-2_5-2.5.9-150000.4.41.1
ruby2.5-2.5.9-150000.4.41.1
ruby2.5-stdlib-2.5.9-150000.4.41.1

CVE-2024-47220, CVE-2024-49761, CVE-2025-27219, CVE-2025-27220

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

libsaml11-3.1.0-150300.3.3.1
opensaml-schemas-3.1.0-150300.3.3.1

CVE-2025-31335

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

libsqlite3-0-3.49.1-150000.3.27.1

CVE-2025-29087, CVE-2025-29088

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

libvmtools0-12.5.2-150600.3.12.1
open-vm-tools-12.5.2-150600.3.12.1

CVE-2025-22247

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

libxml2-2-2.10.3-150500.5.26.1
libxml2-tools-2.10.3-150500.5.26.1
python311-libxml2-2.10.3-150500.5.26.1

CVE-2024-56171, CVE-2025-24928, CVE-2025-27113, CVE-2025-32414, CVE-2025-32415

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

libxslt1-1.1.34-150400.3.6.1

CVE-2023-40403, CVE-2024-55549, CVE-2025-24855

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

openssh-9.6p1-150600.6.26.1
openssh-clients-9.6p1-150600.6.26.1
openssh-common-9.6p1-150600.6.26.1
openssh-fips-9.6p1-150600.6.26.1
openssh-server-9.6p1-150600.6.26.1

CVE-2025-26465, CVE-2025-26466, CVE-2025-32728

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

spring-security-crypto-6.4.4

CVE-2025-22228

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

telnet-1.2-150000.3.6.1

CVE-2022-39028

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

tomcat-embed-core-10.1.40

CVE-2025-24813, CVE-2025-31650, CVE-2025-31651, CVE-2025-46701

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

traceroute-2.0.21-150000.3.3.1

CVE-2023-46316

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

vim-9.1.1176-150500.20.24.2
vim-data-common-9.1.1176-150500.20.24.2.noarch

CVE-2024-43790, CVE-2024-43802, CVE-2024-45306, CVE-2025-1215, CVE-2025-22134, CVE-2025-24014

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

OpenSSL

CVE-2024-13176

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

 

Dell Technologies 建议所有客户考虑 CVSS 基本分数以及任何相关的时间和环境分数,这可能会影响与特定安全漏洞相关的潜在严重程度。

受影响的产品和补救措施

Product Affected Versions Updated Version Link
Dell Secure Connect Gateway -Appliance Versions prior to 5.30.0.14 Version 5.30.0.14 or later https://www.dell.com/support/product-details/product/secure-connect-gateway-ve/drivers

 

Product Affected Versions Updated Version Link
Dell Secure Connect Gateway -Appliance Versions prior to 5.30.0.14 Version 5.30.0.14 or later https://www.dell.com/support/product-details/product/secure-connect-gateway-ve/drivers

 

修订历史记录

RevisionDateDescription
1.02025-06-26Initial Release
2.02025-07-08Updated the category section
3.02025-07-23Updated the category section
4.02025-08-07Added CVE-2024-13176 as remediated
5.02025-10-25Added CVE-2025-46701 as remediated
6.02025-11-17Added CVE-2023-3446, CVE-2023-3817, CVE-2023-5678 as remediated

 

相关信息

受影响的产品

Secure Connect Gateway, Secure Connect Gateway - Application Edition, Secure Connect Gateway - Virtual Edition
文章属性
文章编号: 000337528
文章类型: Dell Security Advisory
上次修改时间: 17 11月 2025
从其他戴尔用户那里查找问题的答案
支持服务
检查您的设备是否在支持服务涵盖的范围内。