DSA-2024-412: Security Update for Dell ECS 3.8.1.2 Multiple Third-Party Component Vulnerabilities
Resumen: Dell ECS remediation is available for multiple security vulnerabilities that could be exploited by malicious users to compromise the affected system.
Este artículo se aplica a
Este artículo no se aplica a
Este artículo no está vinculado a ningún producto específico.
No se identifican todas las versiones del producto en este artículo.
Impacto
High
Detalles
| Third-Party Component | CVEs | More Information |
|---|---|---|
| bind | CVE-2023-4408, CVE-2023-50868 | See NVD link below for Individual scores for each CVE. https://nvd.nist.gov |
| Jasper | CVE-2024-31744 | https://nvd.nist.gov/vuln/detail/CVE-2024-31744 |
| krb5 | CVE-2024-26458, CVE-2024-26461 | See NVD link below for Individual scores for each CVE. https://nvd.nist.gov |
| less | CVE-2024-32487 | https://nvd.nist.gov/vuln/detail/CVE-2024-32487 |
| libpython | CVE-2023-52425 | https://nvd.nist.gov/vuln/detail/CVE-2023-52425 |
| python3 | CVE-2024-0450 | https://nvd.nist.gov/vuln/detail/CVE-2024-0450 |
| python-idna | CVE-2024-3651 | https://nvd.nist.gov/vuln/detail/CVE-2024-3651 |
| python-requests | CVE-2024-35195 | https://nvd.nist.gov/vuln/detail/CVE-2024-35195 |
| util-linux | CVE-2024-28085 | https://nvd.nist.gov/vuln/detail/CVE-2024-28085 |
Corrección y productos afectados
| Product | Affected Versions | Remediated Versions | Link |
|---|---|---|---|
| ECS | Versions prior to 3.8.1.2 | Version 3.8.1.2 | https://www.dell.com/support/incidents-online/contactus/dynamic |
| Product | Affected Versions | Remediated Versions | Link |
|---|---|---|---|
| ECS | Versions prior to 3.8.1.2 | Version 3.8.1.2 | https://www.dell.com/support/incidents-online/contactus/dynamic |
Note:Dell Technologies recommends all customers have their ECS systems upgraded at the earliest opportunity by opening an Operating Environment Upgrade Service Request.
Historial de revisiones
| Revision | Date | Description |
|---|---|---|
| 1.0 | 2024-09-30 | Initial Release |
| 2.0 | 2024-10-01 | Updated for enhanced presentation with no changes to content. |
| 3.0 | 2021-10-03 | Updated for enhanced presentation with no changes to content. |
Información relacionada
Descargo de responsabilidad
Productos afectados
ECS, ECS Appliance, ECS Appliance Hardware Series, ECS Appliance Software with Encryption, ECS Appliance Software without EncryptionPropiedades del artículo
Número del artículo: 000230678
Tipo de artículo: Dell Security Advisory
Última modificación: 03 oct. 2024
Encuentre respuestas a sus preguntas de otros usuarios de Dell
Servicios de soporte
Compruebe si el dispositivo está cubierto por los servicios de soporte.