Skip to main content
  • Place orders quickly and easily
  • View orders and track your shipping status
  • Enjoy members-only rewards and discounts
  • Create and access a list of your products
  • Manage your Dell EMC sites, products, and product-level contacts using Company Administration.

Article Number: 000223700


DSA-2024-162: Security Update for Dell PowerFlex Rack Multiple Third-Party Component Vulnerabilities

Summary: Dell PowerFlex Rack remediation is available for multiple security vulnerabilities that could be exploited by malicious users to compromise the affected system.

Article Content


Impact

High

Details

Third-party Component CVEs More Information
Dell PowerEdge Server BIO CVE-2023-32460, CVE-2023-23583, CVE-2023-45229, CVE-2023-45230, CVE-2023-45231, CVE-2023-45232, CVE-2023-45233, CVE-2023-45234, CVE-2023-45235, CVE-2023-45236, CVE-2023-45237 CVE-2023-20592 DSA-2023-361DSA-2023-370DSA-2023-357DSA-2023-391
Dell CloudLink CVE-2023-20593, CVE-2023-31085, CVE-2023-39189, CVE-2023-39192, CVE-2023-39193, CVE-2023-39194, CVE-2023-42754, CVE-2023-45862, CVE-2023-45871, CVE-2023-5717  DSA-2024-023
Cisco Switches CVE-2024-20294, CVE-2024-20291,       
CVE-2024-20267

See NVD link below for individual scores for each CVE.
https://nvd.nist.gov/This hyperlink is taking you to a website outside of Dell Technologies.

Dell Technologies recommends all customers consider both the CVSS base score and any relevant temporal and environmental scores that may impact the potential severity associated with a particular security vulnerability.

Affected Products and Remediation

Product Software/Firmware Affected Versions Remediated Versions Link
PowerFlex rack RCM Versions prior to 3.7.4.0 Version 3.7.4.0 RCM release
Product Software/Firmware Affected Versions Remediated Versions Link
PowerFlex rack RCM Versions prior to 3.7.4.0 Version 3.7.4.0 RCM release
In the case of manual upgrade for PowerFlex rack, please see this link: https://www.dell.com/support/home/product-support/product/powerflex-rack-rcm-sw/drivers

Revision History

RevisionDateDescription
1.02024-04-02Initial Release
2.02024-04-10Updated hyperlinks for enhanced presentation with no other changes to content.

Related Information


Article Properties


Affected Product

PowerFlex rack, PowerFlex rack connectivity, PowerFlex rack HW, PowerFlex rack RCM Software

Last Published Date

10 Apr 2024

Article Type

Dell Security Advisory