September 15, 2021
Hitachi, Ltd. IT Platform Products Management Division
Hitachi Disk Array Systems have the following vulnerability.
Hitachi-sec-2021-309
CVE-2021-26425 | Windows Event Tracing Elevation of Privilege Vulnerability
CVE-2021-26426 | Windows User Account Profile Picture Elevation of Privilege Vulnerability
CVE-2021-34480 | Scripting Engine Memory Corruption Vulnerability
CVE-2021-34484 | Windows User Profile Service Elevation of Privilege Vulnerability
CVE-2021-34486 | Windows Event Tracing Elevation of Privilege Vulnerability
CVE-2021-34487 | Windows Event Tracing Elevation of Privilege Vulnerability
CVE-2021-34530 | Windows Graphics Component Remote Code Execution Vulnerability
CVE-2021-34533 | Windows Graphics Component Font Parsing Remote Code Execution Vulnerability
CVE-2021-34534 | Windows MSHTML Platform Remote Code Execution Vulnerability
CVE-2021-34535 | Remote Desktop Client Remote Code Execution Vulnerability
CVE-2021-34536 | Storage Spaces Controller Elevation of Privilege Vulnerability
CVE-2021-34537 | Windows Bluetooth Driver Elevation of Privilege Vulnerability
CVE-2021-36937 | Windows Media MPEG-4 Video Decoder Remote Code Execution Vulnerability
CVE-2021-36938 | Windows Cryptographic Primitives Library Information Disclosure Vulnerability
CVE-2021-36948 | Windows Update Medic Service Elevation of Privilege Vulnerability
The following table shows the affected products.
Product Name |
Hitachi Unified Storage VM (HUS VM) |
---|---|
Vulnerability ID |
CVE-2021-26425, CVE-2021-26426, CVE-2021-34480, CVE-2021-34484, CVE-2021-34530, CVE-2021-34533, CVE-2021-34534, CVE-2021-34535, CVE-2021-34536, CVE-2021-34537, CVE-2021-36937, CVE-2021-36938 |
Product Name |
Hitachi Virtual Storage Platform 5100, 5500 Hitachi Virtual Storage Platform 5100H, 5500H |
---|---|
Vulnerability ID |
CVE-2021-26425, CVE-2021-26426, CVE-2021-34480, CVE-2021-34484, CVE-2021-34486, CVE-2021-34487, CVE-2021-34530, CVE-2021-34533, CVE-2021-34534, CVE-2021-34535, CVE-2021-34536, CVE-2021-34537, CVE-2021-36937, CVE-2021-36938, CVE-2021-36948 |
Product Name |
Hitachi Virtual Storage Platform G1000, G1500 Hitachi Virtual Storage Platform F1500 Hitachi Virtual Storage Platform VX7 |
---|---|
Vulnerability ID |
CVE-2021-26425, CVE-2021-26426, CVE-2021-34480, CVE-2021-34484, CVE-2021-34530, CVE-2021-34533, CVE-2021-34534, CVE-2021-34535, CVE-2021-34536, CVE-2021-34537, CVE-2021-36937, CVE-2021-36938 |
The following products are not affected by the vulnerabilities:
Please refer to the Security Update Guide (Microsoft) about the vulnerabilities.