Article Number: 000177031
Resolution:
The following Dell EMC iDRAC firmware releases contain resolutions to these vulnerabilities:
iDRAC | iDRAC firmware Version |
iDRAC9 |
3.20.21.20 |
3.21.24.22 | |
3.21.26.22 | |
3.23.23.23 | |
iDRAC8 | 2.61.60.60 |
iDRAC7 | 2.61.60.60 |
Dell EMC recommends all customers upgrade at the earliest opportunity.
Dell EMC Best Practices regarding iDRAC:
In addition to maintaining up-to-date iDRAC firmware, Dell EMC also advises the following:
Link to remedies:
Customers can download iDRAC firmware for PowerEdge servers and for all other platforms, please select the platform from the Dell support site.
Credit:
CVE-2018-15776: Dell EMC would like to thank Jon Sands and Adam Nielsen for reporting this issue to us.
Dell EMC recommends that all users determine the applicability of this information to their individual situations and take appropriate action. The information set forth herein is provided "as is" without warranty of any kind. Dell EMC disclaims all warranties, either express or implied, including the warranties of merchantability, fitness for a particular purpose, title and non-infringement. In no event shall Dell EMC, or its suppliers, be liable for any damages whatsoever including direct, indirect, incidental, consequential, loss of business profits or special damages, even if Dell EMC or its suppliers have been advised of the possibility of such damages. Some states do not allow the exclusion or limitation of liability for consequential or incidental damages, so the foregoing limitation may not apply.
Hyper-converged Systems, Datacenter Scalable Solutions, PowerEdge, iDRAC7/8 with Lifecycle Controller Version 2.61.60.60, Precision 7920 Rack, Precision Rack 7910
17 Dec 2021
5
Solution