Dell Product Security Update Advisory
Overview
We have released security updates to fix vulnerabilities in Dell products. Users of affected products are advised to update to the latest version.
Affected Products
CVE-2025-30105
XtremIO X2 XMS Versions: 6.4.3 and earlier
CVE-2025-26332
XtremIO X2 TechAdvisor Version: 2.6 or higher and 3.37-30 or lower
CVE-2025-36611
Dell Encryption version: 11.11.0.1 or earlier
Dell Security Management Server version: 11.11.0.2 or earlier
Resolved Vulnerabilities
Sensitive Information Injection into Log Files Vulnerability in XtremIO X2 XMS (CVE-2025-30105)
Sensitive information injection into log files vulnerability in XtremIO X2 TechAdvisor (CVE-2025-26332)
Privilege escalation vulnerability in Dell Encryption and Dell Security Management Server (CVE-2025-36611)
Vulnerability Patches
Vulnerability patches have been made available in the latest updates. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.
CVE-2025-30105
XtremIO X2 XMS Version: 6.4.3 and later
CVE-2025-26332
XtremIO X2 TechAdvisor Version: 3.4
CVE-2025-36611
Dell Encryption Version: 11.11.0.1 or later
Dell Security Management Server Version: 11.11.0.2 or later
References
[1] DSA-2025-108: Security Update for Dell EMC XtremIO X2
https://www.dell.com/support/kbdoc/en-us/000337241/dsa-2025-108-security-update-for-dell-emc-xtremio-x2
[2] DSA-2025-292: Security Update for Dell Encryption and Dell Security Management Server for an Improper Link Resolution Vulnerability
https://www.dell.com/support/kbdoc/en-us/000347824/dsa-2025-292