DSA-2024-416: Security Update for Dell APEX Cloud Platform for Microsoft Azure and Dell APEX Cloud Platform Foundation Software for Multiple Third-Party Component Vulnerabilities

摘要: Dell APEX Cloud Platform for Microsoft Azure remediation is available for multiple security vulnerabilities that could be exploited by malicious users to compromise the affected system. ...

本文章適用於 本文章不適用於 本文無關於任何特定產品。 本文未識別所有產品版本。

影響

High

詳細資料

Third-party Component

CVEs

More Information

Dell PowerEdge Server Security Update for Intel Ethernet Controllers & Adapters and Intel Processor Vulnerabilities

CVE-2024-24852, CVE-2024-36274

DSA-2025-042

Dell PowerEdge Server Security Update for Intel Ethernet Controllers & Adapters and TDX Software Vulnerabilities

CVE-2024-22374, CVE-2024-22376, CVE-2024-21810, CVE-2024-23497, CVE-2024-23981, CVE-2024-24986, CVE-2024-21807, CVE-2024-21769, CVE-2024-24983, CVE-2024-23499, CVE-2024-21806

DSA-2024-359

Dell iDRAC Service Module 7-Zip Vulnerability

CVE-2023-31102, CVE-2023-40481

DSA-2024-379

Dell PowerEdge Server for Intel 2024 Security Advisories

CVE-2023-43753, CVE-2023-41833

DSA-2024-308

Dell Technologies 建議所有客戶不僅要參考 CVSS 基本分數,也要將可能會影響與特定安全漏洞相關之潛在嚴重性的所有相關暫時和環境分數納入考量。

受影響的產品與補救措施

Product

Affected Versions

Remediated Versions

Link

Microsoft Azure Stack HCI

Versions prior to 10.2408.1

Version 10.2408.1 or later

Drivers & Downloads

Dell Apex Cloud Platform for Microsoft Azure

Versions prior to 01.03.00.00

Version 01.03.00.00 or later

 Drivers & Downloads

Product

Affected Versions

Remediated Versions

Link

Microsoft Azure Stack HCI

Versions prior to 10.2408.1

Version 10.2408.1 or later

Drivers & Downloads

Dell Apex Cloud Platform for Microsoft Azure

Versions prior to 01.03.00.00

Version 01.03.00.00 or later

 Drivers & Downloads

To apply patch for Dell iDRAC Service Module 7-Zip Vulnerability, refer to the instructions provided in Workarounds and Mitigations Section.

因應措施與緩解措施

CVE ID

MITIGATION

CVE-2023-31102, CVE-2023-40481

How to manually patch iSM security hotfix after LCM to 01.03.x.x release

修訂歷史記錄

Revision

Date

Description

1.0

2024-10-18

Initial Release

2.0

2025-02-27

Added CVE-2024-24852, CVE-2024-36274 for Intel Ethernet Controllers & Adapters

相關資訊

受影響的產品

APEX, APEX Cloud Platforms Solution Offerings, APEX Cloud Platform for Microsoft Azure, Product Security Information
文章屬性
文章編號: 000237607
文章類型: Dell Security Advisory
上次修改時間: 13 10月 2025
向其他 Dell 使用者尋求您問題的答案
支援服務
檢查您的裝置是否在支援服務的涵蓋範圍內。