Skip to main content
  • Place orders quickly and easily
  • View orders and track your shipping status
  • Enjoy members-only rewards and discounts
  • Create and access a list of your products
  • Manage your Dell EMC sites, products, and product-level contacts using Company Administration.

Article Number: 000198699


DSA-2022-106: Dell Technologies PowerProtect Data Domain Security Update for Multiple Third-Party Component Vulnerabilities

Summary: Dell Technologies PowerProtect Data Domain remediation is available for multiple security vulnerabilities that may be exploited by malicious users to compromise the affected system.

Article Content


Impact

Medium

Details

Third-party Component CVEs More information
iDRAC9 CVE-2021-3712 Dell article: DSA-2021-259 Dell iDRAC Security Update for Multiple Security Vulnerabilities
 
 
CVE-2021-36347
CVE-2021-36348
Intel NIC CVE-2021-0200  Intel-SA-00554: Intel Ethernet Advisory
Third-party Component CVEs More information
iDRAC9 CVE-2021-3712 Dell article: DSA-2021-259 Dell iDRAC Security Update for Multiple Security Vulnerabilities
 
 
CVE-2021-36347
CVE-2021-36348
Intel NIC CVE-2021-0200  Intel-SA-00554: Intel Ethernet Advisory
Dell Technologies recommends all customers consider both the CVSS base score and any relevant temporal and environmental scores that may impact the potential severity associated with a particular security vulnerability.

Affected Products and Remediation

CVEs Addressed Product Affected Versions Updated Versions Link to Update
CVE-2021-3712
CVE-2021-36347
CVE-2021-36348
PowerProtect DD Appliance model: DD3300 and DD6900/DD9400/DD9900 7.3 to 7.7 7.7.2.0 and later For more details about DDOS versions available for download, see the Dell article links below (requires log in to Dell Support to view articles):
7.0, 7.1, and 7.2 7.2.0.90 and later within 7.2.0.x
Or
7.7.2 and later
PowerProtect DD Appliance model: DD6400 7.7 7.7.2.0 and later
CVE-2021-0200 PowerProtect DD Appliance model: DD3300 7.3 to 7.7 7.7.2.0 and later
7.0, 7.1, and 7.2 7.2.0.90 and later within 7.2.0.x
Or
7.7.2 and later
PowerProtect DD Appliance model: DD6400 7.7 7.7.2.0 and later
CVEs Addressed Product Affected Versions Updated Versions Link to Update
CVE-2021-3712
CVE-2021-36347
CVE-2021-36348
PowerProtect DD Appliance model: DD3300 and DD6900/DD9400/DD9900 7.3 to 7.7 7.7.2.0 and later For more details about DDOS versions available for download, see the Dell article links below (requires log in to Dell Support to view articles):
7.0, 7.1, and 7.2 7.2.0.90 and later within 7.2.0.x
Or
7.7.2 and later
PowerProtect DD Appliance model: DD6400 7.7 7.7.2.0 and later
CVE-2021-0200 PowerProtect DD Appliance model: DD3300 7.3 to 7.7 7.7.2.0 and later
7.0, 7.1, and 7.2 7.2.0.90 and later within 7.2.0.x
Or
7.7.2 and later
PowerProtect DD Appliance model: DD6400 7.7 7.7.2.0 and later

Revision History

RevisionDateDescription
1.02022-05-17Initial Release

Related Information


Article Properties


Affected Product

PowerProtect Data Domain Management Center, Product Security Information

Last Published Date

17 May 2022

Article Type

Dell Security Advisory