Zu den Hauptinhalten
  • Bestellungen schnell und einfach aufgeben
  • Bestellungen anzeigen und den Versandstatus verfolgen
  • Profitieren Sie von exklusiven Prämien und Rabatten für Mitglieder
  • Erstellen Sie eine Liste Ihrer Produkte, auf die Sie jederzeit zugreifen können.
  • Verwalten Sie mit der Unternehmensverwaltung Ihre Dell EMC Seiten, Produkte und produktspezifischen Kontakte.

Artikelnummer: 000219148


DSA-2023-317: Security Update for Dell NetWorker vProxy multiple linux packages vulnerabilities

Zusammenfassung: Dell NetWorker vProxy remediation is available for multiple linux packages that could be exploited by malicious users to compromise the affected system.

Artikelinhalt


Auswirkungen

High

Details

Third-party Component CVEs More Information
glib2 CVE-2023-24593, CVE-2023-25180 See NVD link below for individual scores for each CVE. 
http://nvd.nist.gov/This hyperlink is taking you to a website outside of Dell Technologies.
dmidecode CVE-2023-30630 See NVD link below for individual scores for each CVE. 
http://nvd.nist.gov/This hyperlink is taking you to a website outside of Dell Technologies.
libxml2 CVE-2023-28484, CVE-2023-29469 See NVD link below for individual scores for each CVE. 
http://nvd.nist.gov/This hyperlink is taking you to a website outside of Dell Technologies.
git CVE-2023-25652, CVE-2023-25815, CVE-2023-29007 See NVD link below for individual scores for each CVE. 
http://nvd.nist.gov/This hyperlink is taking you to a website outside of Dell Technologies.
shadow CVE-2023-29383 See NVD link below for individual scores for each CVE. 
http://nvd.nist.gov/This hyperlink is taking you to a website outside of Dell Technologies.
ncurses CVE-2023-29491 See NVD link below for individual scores for each CVE. 
http://nvd.nist.gov/This hyperlink is taking you to a website outside of Dell Technologies.
kernel CVE-2020-36691, CVE-2022-43945, CVE-2023-1611, CVE-2023-1670, CVE-2023-1855, CVE-2023-1989, CVE-2023-1990, CVE-2023-1998, CVE-2023-2124, CVE-2023-2162, CVE-2023-2483, CVE-2023-30772 See NVD link below for individual scores for each CVE. 
http://nvd.nist.gov/This hyperlink is taking you to a website outside of Dell Technologies.
ntp CVE-2023-26551, CVE-2023-26552, CVE-2023-26553, CVE-2023-26554 See NVD link below for individual scores for each CVE. 
http://nvd.nist.gov/This hyperlink is taking you to a website outside of Dell Technologies.
ucode-intel CVE-2022-33972 See NVD link below for individual scores for each CVE. 
http://nvd.nist.gov/This hyperlink is taking you to a website outside of Dell Technologies.
openssl-1_0_0 CVE-2023-2650 See NVD link below for individual scores for each CVE. 
http://nvd.nist.gov/This hyperlink is taking you to a website outside of Dell Technologies.
supportutils CVE-2022-45154 See NVD link below for individual scores for each CVE. 
http://nvd.nist.gov/This hyperlink is taking you to a website outside of Dell Technologies.

Dell Technologies empfiehlt allen Kunden, sowohl die CVSS-Gesamtbewertung als auch alle relevanten zeitlichen und umweltbezogenen Bewertungen zu berücksichtigen, die sich auf den potenziellen Schweregrad einer bestimmten Sicherheitsschwachstelle auswirken können.

Betroffene Produkte und Problembehebung

Product Software/Firmware Affected Versions Remediated Versions Link
Dell NetWorker vProxy  vProxy Appliance Versions 19.9, 19.9.0.1 Version 19.9.0.2 https://www.dell.com/support/home/product-support/product/networker/drivers
Dell NetWorker vProxy  vProxy Appliance Versions 19.8 through 19.8.0.2 Version 19.8.0.3 https://www.dell.com/support/home/product-support/product/networker/drivers
Dell NetWorker vProxy  vProxy Appliance Versions 19.7 through 19.7.0.5 Version 19.9.0.2 https://www.dell.com/support/home/product-support/product/networker/drivers
Dell NetWorker vProxy  vProxy Appliance Version 19.7.1 Version 19.9.0.2 https://www.dell.com/support/home/product-support/product/networker/drivers
Dell NetWorker vProxy  vProxy Appliance Versions prior to 19.7 Version 19.9.0.2 https://www.dell.com/support/home/product-support/product/networker/drivers
Product Software/Firmware Affected Versions Remediated Versions Link
Dell NetWorker vProxy  vProxy Appliance Versions 19.9, 19.9.0.1 Version 19.9.0.2 https://www.dell.com/support/home/product-support/product/networker/drivers
Dell NetWorker vProxy  vProxy Appliance Versions 19.8 through 19.8.0.2 Version 19.8.0.3 https://www.dell.com/support/home/product-support/product/networker/drivers
Dell NetWorker vProxy  vProxy Appliance Versions 19.7 through 19.7.0.5 Version 19.9.0.2 https://www.dell.com/support/home/product-support/product/networker/drivers
Dell NetWorker vProxy  vProxy Appliance Version 19.7.1 Version 19.9.0.2 https://www.dell.com/support/home/product-support/product/networker/drivers
Dell NetWorker vProxy  vProxy Appliance Versions prior to 19.7 Version 19.9.0.2 https://www.dell.com/support/home/product-support/product/networker/drivers
The Affected Products and Remediation table above may not be a comprehensive list of all affected supported versions and may be updated as more information becomes available.
  1. Platforms: vProxy is built upon SUSE based Linux operating system. So it supports only Linux platform.
  2. Please refer to the installation version NetWorker 19.8.0.3 vProxy OVA under the Download list on https://www.dell.com/support/home/product-support/product/networker/drivers with the Description as Linux SLES12 SP5 (64-bit). NetWorker vProxy virtual appliance. Version 4.3.0-47.ova
  3. Please refer to the installation version NetWorker 19.9.0.2 vProxy OVA under the Download list on https://www.dell.com/support/home/product-support/product/networker/drivers with the Description as Linux SLES12 SP5 (64-bit). NetWorker vProxy virtual appliance. Version 4.3.0-49.ova
  4. Versions prior to 19.7 means versions 19.6.x, 19.5.x, 19.4.x family of releases that are still under standard support. For more information on Dell End-of-Life Documents for converged infrastructure, midrange and enterprise storage, and storage networking products kindly refer to: https://www.dell.com/support/kbdoc/000185734/all-dell-emc-end-of-life-documents?lang=en
  5. Unless specified as impacted, the term “later releases” encompasses all NetWorker releases, under standard support, that are of a higher minor or major version than the specified release.
  6. Dell recommends that you always upgrade to the latest release/version for your product

Revisionsverlauf

RevisionDateDescription
1.02023-11-02Initial Release

Zugehörige Informationen


Artikeleigenschaften


Betroffenes Produkt

NetWorker Family, NetWorker, NetWorker Series, NetWorker Module, Product Security Information

Letztes Veröffentlichungsdatum

02 Nov. 2023

Artikeltyp

Dell Security Advisory