Blog | G5 Cyber Security

Millions of Dell Devices Vulnerable to Update Driver Flaw

Dell has patched five flaws in a vulnerable firmware update driver that has shipped in millions of laptops, tablets and desktops since 2009. The flaws are not remotely exploitable, but exploiting them requires local authenticated access. Dell has wrapped the vulnerable driver, which is dbutil_2_3.sys, in BIOS update utility. The vulnerabilities have been assigned a single CVE, CVE-2021-21551, and they have a CVSS score of 8.8.8. Dell is not aware of this vulnerability having been exploited by a malicious actor to date.”]

Source: https://www.careersinfosecurity.com/millions-dell-devices-vulnerable-to-update-driver-flaw-a-16522

Exit mobile version