Skip to main content
  • Place orders quickly and easily
  • View orders and track your shipping status
  • Enjoy members-only rewards and discounts
  • Create and access a list of your products

DSA-2020-174: Dell EMC VxRail Security Update for Multiple Third Party Component Vulnerabilities

Summary: Dell EMC VxRail remediation is available for multiple security vulnerabilities that could be exploited by malicious users to compromise the affected system.

This article applies to This article does not apply to This article is not tied to any specific product. Not all product versions are identified in this article.

Impact

Critical

Details

NA

Third-party Component CVE Number More information
VMware ESXi 6.5 CVE-2020-3962 For more information, see VMSA-2020-0015
CVE-2020-3963
CVE-2020-3964
CVE-2020-3965
CVE-2020-3966
CVE-2020-3967
CVE-2020-3968
CVE-2020-3969
CVE-2020-3970
CVE-2020-3971
VMware ESXi 6.5 CVE-2020-3960 For more information, see VMSA-2020-0012 
VMware ESXi 6.5 CVE-2020-3958 For more information, see VMSA-2020-0011
CVE-2020-3959
SUSE Enterprise Linux Server
Linux
 
CVE-2016-3189 For more information, see SUSE Enterprise Linux Server 12 SP2 Updates
CVE-2017-12652
CVE-2019-11745
CVE-2019-12900
CVE-2019-14250
CVE-2019-1551
CVE-2019-15847
CVE-2019-17006
CVE-2019-17041
CVE-2019-17042
CVE-2019-18634
CVE-2019-18902
CVE-2019-18903
CVE-2019-7317
CVE-2020-1712
CVE-2020-1720
CVE-2020-3898
CVE-2020-7216
CVE-2020-7217
CVE-2020-8013
Spring Framework CVE-2018-1270 Pivotal Spring Security Advisories
CVE-2018-1272
CVE-2018-1275
CVE-2018-15756
CVE-2020-5398
Oracle Critical Patch Update CVE-2020-2803 Oracle Critical Patch Update Advisory - April 2020
Oracle Critical Patch Update Advisory - January 2020
CVE-2020-2805
CVE-2019-18197
CVE-2020-2816
CVE-2020-2604
CVE-2019-16168
CVE-2019-13117
CVE-2019-13118
CVE-2019-18197
CVE-2020-2754
CVE-2020-2755
CVE-2020-2756
CVE-2020-2757
CVE-2020-2764
CVE-2020-2767
CVE-2020-2773
Intel Platform Updates (2020.1):    
  • VxRail E560
  • VxRail E560F
  • VxRail E560N
  • VxRail P570
  • VxRail P570F
  • VxRail V570
  • VxRail V570F
  • VxRail G560
  • VxRail G560/F
  • VxRail S570
  • VxRail P580N
  • VxRail D560
  • VxRail D560F
CVE-2020-0545 https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00295.html
CVE-2020-0528 https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00322.html
CVE-2020-0529
Intel Platform Updates (2019.2):   
  • VxRail E460
  • VxRail E460F
  • VxRail P470
  • VxRail P470F
  • VxRail V470
  • VxRail V470F
  • VxRail S470








 
CVE-2019-11090 https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00241.html
CVE-2019-11109
CVE-2019-0124 https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00220.html
 
CVE-2019-0151
CVE-2019-0123
CVE-2019-0152 https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00240.html
 
CVE-2019-11136
CVE-2019-11137
CVE-2019-11135 https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00270.html
 
CVE-2019-11139 https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00271.html
Intel Platform Updates (2019.1):    
  • VxRail E560
  • VxRail E560F
  • VxRail E560N
  • VxRail P570
  • VxRail P570F
  • VxRail V570
  • VxRail V570F
  • VxRail G560
  • VxRail G560/F
  • VxRail S570
  • VxRail P580N
  • VxRail D560
  • VxRail D560F
CVE-2020-0548 https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00329.html
CVE-2020-0549

For more information about any of the Common Vulnerabilities and Exposures (CVEs) mentioned here, consult the National Vulnerability Database (NVD) at http://nvd.nist.gov/home.cfm.  

To search for a particular CVE, use the database s search utility at http://web.nvd.nist.gov/view/vuln/search.
Third-party Component CVE Number More information
VMware ESXi 6.5 CVE-2020-3962 For more information, see VMSA-2020-0015
CVE-2020-3963
CVE-2020-3964
CVE-2020-3965
CVE-2020-3966
CVE-2020-3967
CVE-2020-3968
CVE-2020-3969
CVE-2020-3970
CVE-2020-3971
VMware ESXi 6.5 CVE-2020-3960 For more information, see VMSA-2020-0012 
VMware ESXi 6.5 CVE-2020-3958 For more information, see VMSA-2020-0011
CVE-2020-3959
SUSE Enterprise Linux Server
Linux
 
CVE-2016-3189 For more information, see SUSE Enterprise Linux Server 12 SP2 Updates
CVE-2017-12652
CVE-2019-11745
CVE-2019-12900
CVE-2019-14250
CVE-2019-1551
CVE-2019-15847
CVE-2019-17006
CVE-2019-17041
CVE-2019-17042
CVE-2019-18634
CVE-2019-18902
CVE-2019-18903
CVE-2019-7317
CVE-2020-1712
CVE-2020-1720
CVE-2020-3898
CVE-2020-7216
CVE-2020-7217
CVE-2020-8013
Spring Framework CVE-2018-1270 Pivotal Spring Security Advisories
CVE-2018-1272
CVE-2018-1275
CVE-2018-15756
CVE-2020-5398
Oracle Critical Patch Update CVE-2020-2803 Oracle Critical Patch Update Advisory - April 2020
Oracle Critical Patch Update Advisory - January 2020
CVE-2020-2805
CVE-2019-18197
CVE-2020-2816
CVE-2020-2604
CVE-2019-16168
CVE-2019-13117
CVE-2019-13118
CVE-2019-18197
CVE-2020-2754
CVE-2020-2755
CVE-2020-2756
CVE-2020-2757
CVE-2020-2764
CVE-2020-2767
CVE-2020-2773
Intel Platform Updates (2020.1):    
  • VxRail E560
  • VxRail E560F
  • VxRail E560N
  • VxRail P570
  • VxRail P570F
  • VxRail V570
  • VxRail V570F
  • VxRail G560
  • VxRail G560/F
  • VxRail S570
  • VxRail P580N
  • VxRail D560
  • VxRail D560F
CVE-2020-0545 https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00295.html
CVE-2020-0528 https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00322.html
CVE-2020-0529
Intel Platform Updates (2019.2):   
  • VxRail E460
  • VxRail E460F
  • VxRail P470
  • VxRail P470F
  • VxRail V470
  • VxRail V470F
  • VxRail S470








 
CVE-2019-11090 https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00241.html
CVE-2019-11109
CVE-2019-0124 https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00220.html
 
CVE-2019-0151
CVE-2019-0123
CVE-2019-0152 https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00240.html
 
CVE-2019-11136
CVE-2019-11137
CVE-2019-11135 https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00270.html
 
CVE-2019-11139 https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00271.html
Intel Platform Updates (2019.1):    
  • VxRail E560
  • VxRail E560F
  • VxRail E560N
  • VxRail P570
  • VxRail P570F
  • VxRail V570
  • VxRail V570F
  • VxRail G560
  • VxRail G560/F
  • VxRail S570
  • VxRail P580N
  • VxRail D560
  • VxRail D560F
CVE-2020-0548 https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00329.html
CVE-2020-0549

For more information about any of the Common Vulnerabilities and Exposures (CVEs) mentioned here, consult the National Vulnerability Database (NVD) at http://nvd.nist.gov/home.cfm.  

To search for a particular CVE, use the database s search utility at http://web.nvd.nist.gov/view/vuln/search.
Dell Technologies recommends all customers consider both the CVSS base score and any relevant temporal and environmental scores that may impact the potential severity associated with a particular security vulnerability.

Affected Products & Remediation

Affected products:     
Dell EMC VxRail Appliance versions prior to 4.5.422


Resolution:     
The following Dell EMC VxRail Appliance release addresses these vulnerabilities:     
  • Dell EMC VxRail Appliance 4.5.422
Dell EMC recommends all customers upgrade at the earliest opportunity.
Affected products:     
Dell EMC VxRail Appliance versions prior to 4.5.422


Resolution:     
The following Dell EMC VxRail Appliance release addresses these vulnerabilities:     
  • Dell EMC VxRail Appliance 4.5.422
Dell EMC recommends all customers upgrade at the earliest opportunity.

Related Information

Affected Products

CloudArray Virtual Edition for VxRail Appliance, Pivotal Ready Architecture, Product Security Information, VMWare Cloud on Dell EMC VxRail E560F, VMWare Cloud on Dell EMC VxRail E560N, VxRail 460 and 470 Nodes, VxRail Appliance Family , VxRail Appliance Series, VxRail G410, VxRail G Series Nodes, VxRail D Series Nodes, VxRail D560, VxRail D560F, VxRail E Series Nodes, VxRail E460, VxRail E560, VxRail E560 VCF, VxRail E560F, VxRail E560F VCF, VxRail E560N, VxRail E560N VCF, VxRail E665F, VxRail G560, VxRail G560 VCF, VxRail G560F, VxRail G560F VCF, VxRail Gen2 Hardware, VxRail P Series Nodes, VxRail P470, VxRail P570, VxRail P570 VCF, VxRail P570F, VxRail P570F VCF, VxRail P580N, VxRail P580N VCF, VxRail S Series Nodes, VxRail S470, VxRail S570, VxRail S570 VCF, VxRail Software, VxRail V Series Nodes, VxRail V470, VxRail V570, VxRail V570 VCF, VxRail V570F ...
Article Properties
Article Number: 000001784
Article Type: Dell Security Advisory
Last Modified: 24 Nov 2021
Find answers to your questions from other Dell users
Support Services
Check if your device is covered by Support Services.