Dell Product Security Update Advisory

Dell Product Security Update Advisory

Overview

 

We have released security updates to fix vulnerabilities in Dell products. Users of affected products are advised to update to the latest version.
 

 

Affected Products

 

CVE-2025-30105

 

XtremIO X2 XMS Versions: 6.4.3 and earlier

 

CVE-2025-26332

 

XtremIO X2 TechAdvisor Version: 2.6 or higher and 3.37-30 or lower

 

CVE-2025-36611

 

Dell Encryption version: 11.11.0.1 or earlier
Dell Security Management Server version: 11.11.0.2 or earlier

 

 

Resolved Vulnerabilities

Sensitive Information Injection into Log Files Vulnerability in XtremIO X2 XMS (CVE-2025-30105)
Sensitive information injection into log files vulnerability in XtremIO X2 TechAdvisor (CVE-2025-26332)
Privilege escalation vulnerability in Dell Encryption and Dell Security Management Server (CVE-2025-36611)

 

 

Vulnerability Patches

Vulnerability patches have been made available in the latest updates. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.

 

CVE-2025-30105

 

XtremIO X2 XMS Version: 6.4.3 and later

 

CVE-2025-26332

 

XtremIO X2 TechAdvisor Version: 3.4

 

CVE-2025-36611

 

Dell Encryption Version: 11.11.0.1 or later
Dell Security Management Server Version: 11.11.0.2 or later

 

 

References

 

[1] DSA-2025-108: Security Update for Dell EMC XtremIO X2
https://www.dell.com/support/kbdoc/en-us/000337241/dsa-2025-108-security-update-for-dell-emc-xtremio-x2
[2] DSA-2025-292: Security Update for Dell Encryption and Dell Security Management Server for an Improper Link Resolution Vulnerability
https://www.dell.com/support/kbdoc/en-us/000347824/dsa-2025-292