DSA-2025-184: Security Update for Dell Data Lakehouse Multiple Third-Party Component Vulnerabilities

摘要: Dell Data Lakehouse remediation is available for multiple security vulnerabilities that could be exploited by malicious users to compromise the affected system.

本文章適用於 本文章不適用於 本文無關於任何特定產品。 本文未識別所有產品版本。

影響

Critical

詳細資料

Third-party Component

CVEs

More Information

busybox

CVE-2023-42363, CVE-2023-42364, CVE-2023-42365, CVE-2023-42366

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

json-path v2.8.0

CVE-2023-51074

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

derby

CVE-2018-1313, CVE-2022-46337

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

glib2

CVE-2024-52533

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

go

CVE-2022-41716, CVE-2023-29402, CVE-2023-29404, CVE-2023-29405, CVE-2023-39323, CVE-2023-45285

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

Intel(R) TDX Module

CVE-2024-27457

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

Intel(R) Xeon(R) processor

CVE-2024-23919, CVE-2024-25565, CVE-2024-31068, CVE-2024-34023, CVE-2024-34170, CVE-2024-36242, CVE-2024-38660, CVE-2024-38665

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

java

CVE-2024-20918, CVE-2024-20926, CVE-2024-20952

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

Apache Log4j SMTP

CVE-2020-9488

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

Bouncy Castle Java Cryptography APIs

CVE-2024-30172

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

iq80 Snappy

CVE-2024-36124

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

EDK2

CVE-2024-38796

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

Dell Technologies 建議所有客戶不僅要參考 CVSS 基本分數,也要將可能會影響與特定安全漏洞相關之潛在嚴重性的所有相關暫時和環境分數納入考量。

受影響的產品與補救措施

Product

Affected Versions

Remediated Versions

Link

Dell Data Lakehouse

Versions prior to 1.4.0.0

Version 1.4.0.0 or later

https://www.dell.com/support/product-details/product/dell-data-lakehouse/drivers

Product

Affected Versions

Remediated Versions

Link

Dell Data Lakehouse

Versions prior to 1.4.0.0

Version 1.4.0.0 or later

https://www.dell.com/support/product-details/product/dell-data-lakehouse/drivers

修訂歷史記錄

Revision

Date

Description

1.0

2025-04-16

Initial Release

相關資訊

受影響的產品

Data Management, Dell Data Lakehouse
文章屬性
文章編號: 000308929
文章類型: Dell Security Advisory
上次修改時間: 09 9月 2025
向其他 Dell 使用者尋求您問題的答案
支援服務
檢查您的裝置是否在支援服務的涵蓋範圍內。