Security researchers have found four major security vulnerabilities in Dell SupportAssist software. The vulnerabilities allow attackers to remotely execute code within the BIOS of impacted devices. The issue affects 129 Dell models of consumer and business laptops, desktops, and tablets. Dell is providing BIOS/UEFI updates for impacted systems and updates to affected executables on Dell.com. The vulnerabilities are independent, and each one could lead to arbitrary code execution in BIOS. Users advised not to use BIOSConnect for updating their systems.
Source: https://www.bleepingcomputer.com/news/security/dell-supportassist-bugs-put-over-30-million-pcs-at-risk/

