Skip to main content
  • Place orders quickly and easily
  • View orders and track your shipping status
  • Create and access a list of your products
  • Manage your Dell EMC sites, products, and product-level contacts using Company Administration.
Some article numbers may have changed. If this isn't what you're looking for, try searching all articles. Search articles

Article Number: 000199729


DSA-2022-133: Dell EMC RecoverPoint Security Update Multiple Vulnerabilities

Summary: Dell EMC RecoverPoint Remediation is available for multiple vulnerabilities that may be exploited by malicious users to compromise the affected system.

Article Content


Impact

High

Details

Third-party Component  CVEs  More information 
Polkit CVE-2021-4034  Privilege Escalation Vulnerability
Apache Log4j  CVE-2021-44832   Apache Log4j Remote Code Execution 
Third-party Component  CVEs  More information 
Polkit CVE-2021-4034  Privilege Escalation Vulnerability
Apache Log4j  CVE-2021-44832   Apache Log4j Remote Code Execution 
Dell Technologies recommends all customers consider both the CVSS base score and any relevant temporal and environmental scores that may impact the potential severity associated with a particular security vulnerability.

Affected Products and Remediation

Product  Affected Versions  Updated Versions  Link to Update 
RecoverPoint for Virtual machines  5.3 SP2 P4
5.3 SP2 P3
5.3 SP2 P2
5.3 SP2 P1
5.3 SP1 P1
5.3 SP2
5.3 SP1
5.3
 5.3.3 https://www.dell.com/support/home/en-us/product-support/product/recoverpoint-for-virtual-machines/drivers
 

Note: Dell EMC recommends that RecoverPoint for VMs customers can upgrade to RecoverPoint for VMs 5.3.3 version which has full remediation to CVE-2021-44832.
Product  Affected Versions  Updated Versions  Link to Update 
RecoverPoint for Virtual machines  5.3 SP2 P4
5.3 SP2 P3
5.3 SP2 P2
5.3 SP2 P1
5.3 SP1 P1
5.3 SP2
5.3 SP1
5.3
 5.3.3 https://www.dell.com/support/home/en-us/product-support/product/recoverpoint-for-virtual-machines/drivers
 

Note: Dell EMC recommends that RecoverPoint for VMs customers can upgrade to RecoverPoint for VMs 5.3.3 version which has full remediation to CVE-2021-44832.

Workarounds and Mitigations

None.

Revision History

Revision Date Description 
1.02022-05-16Initial Release
2.02022-05-17Updated Versions

Related Information


Article Properties


Affected Product

Product Security Information, RecoverPoint for Virtual Machines

Last Published Date

17 May 2022

Article Type

Dell Security Advisory