Skip to main content
  • Place orders quickly and easily
  • View orders and track your shipping status
  • Enjoy members-only rewards and discounts
  • Create and access a list of your products
  • Manage your Dell EMC sites, products, and product-level contacts using Company Administration.

Article Number: 000189667


DSA-2021-135: Dell SRM and Dell Storage Monitoring and Reporting (SMR) Security Update for Multiple Third-party Component Vulnerabilities

Summary: Multiple components within Dell SRM and Dell SMR require a security update to address various vulnerabilities.

Article Content


Impact

Critical

Details

 
Third-party Component CVEs More Information
SuSE Linux Binaries
*Only for vApp
CVE-2016-1544 See NVD for individual scores for each CVE
CVE-2018-16395
CVE-2019-17571
CVE-2020-8625
CVE-2020-12321
CVE-2020-14372
CVE-2020-25632
CVE-2020-25647
CVE-2020-27749
CVE-2020-27779
CVE-2020-36221
CVE-2021-20225
CVE-2021-20233
CVE-2021-21300
CVE-2021-23840
CVE-2021-27218
MySQL
 
CVE-2021-2146
CVE-2021-2154
CVE-2021-2162
CVE-2021-2166
CVE-2021-2169
CVE-2021-2171
CVE-2021-2174
CVE-2021-2179
CVE-2021-2180
CVE-2021-2194
CVE-2021-2226
CVE-2021-2307
CVE-2021-3449
CVE-2021-23841
Apache Tomcat CVE-2021-25122
CVE-2021-25329
Java CVE-2021-2161
CVE-2021-2163
Eclipse Jetty CVE-2020-27223
CVE-2021-28163
CVE-2021-28164
CVE-2021-28165

 
Third-party Component CVEs More Information
SuSE Linux Binaries
*Only for vApp
CVE-2016-1544 See NVD for individual scores for each CVE
CVE-2018-16395
CVE-2019-17571
CVE-2020-8625
CVE-2020-12321
CVE-2020-14372
CVE-2020-25632
CVE-2020-25647
CVE-2020-27749
CVE-2020-27779
CVE-2020-36221
CVE-2021-20225
CVE-2021-20233
CVE-2021-21300
CVE-2021-23840
CVE-2021-27218
MySQL
 
CVE-2021-2146
CVE-2021-2154
CVE-2021-2162
CVE-2021-2166
CVE-2021-2169
CVE-2021-2171
CVE-2021-2174
CVE-2021-2179
CVE-2021-2180
CVE-2021-2194
CVE-2021-2226
CVE-2021-2307
CVE-2021-3449
CVE-2021-23841
Apache Tomcat CVE-2021-25122
CVE-2021-25329
Java CVE-2021-2161
CVE-2021-2163
Eclipse Jetty CVE-2020-27223
CVE-2021-28163
CVE-2021-28164
CVE-2021-28165

Dell Technologies recommends all customers consider both the CVSS base score and any relevant temporal and environmental scores that may impact the potential severity associated with a particular security vulnerability.

Affected Products and Remediation

Product Affected Versions Updated Versions Link to Update  
Dell SRM Versions before 4.6.0.0
 
4.6.0.0 https://support.emc.com/downloads/34247_SRM
 
 
 
Dell SMR Versions before 4.6.0.0 4.6.0.0 https://support.emc.com/downloads/40532_SMR  
 
Product Affected Versions Updated Versions Link to Update  
Dell SRM Versions before 4.6.0.0
 
4.6.0.0 https://support.emc.com/downloads/34247_SRM
 
 
 
Dell SMR Versions before 4.6.0.0 4.6.0.0 https://support.emc.com/downloads/40532_SMR  
 

Revision History

RevisionDateDescription
1.02021-07-19Initial Release

Related Information


Article Properties


Affected Product

EMC Storage Monitoring and Reporting, SRM, Product Security Information, SRM

Product

Storage Monitoring and Reporting

Last Published Date

19 Jul 2021

Article Type

Dell Security Advisory