First published: Thu Jun 24 2021(Updated: )
Dell UEFI BIOS https stack leveraged by the Dell BIOSConnect feature and Dell HTTPS Boot feature contains an improper certificate validation vulnerability. A remote unauthenticated attacker may exploit this vulnerability using a person-in-the-middle attack which may lead to a denial of service and payload tampering.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell Alienware m15 R6 Firmware | <1.3.3 | |
Dell Alienware m15 R6 Firmware | ||
Dell Chengming 3990 | <1.4.1 | |
Dell Chengming 3977 Firmware | ||
Dell Chengming 3991 Firmware | <1.4.1 | |
Dell Chengming 3991 Firmware | ||
Dell G15 5510 Firmware | <1.4.0 | |
Dell G15 5510 Firmware | ||
Dell G15 5511 Firmware | <1.3.3 | |
Dell G15 5511 Firmware | ||
Dell G3 15 3500 firmware | <1.9.0 | |
Dell G3 15 3500 | ||
Dell G5 15 5500 Firmware | <1.9.0 | |
Dell G5 15 5500 Firmware | ||
Dell G7 15 7500 Firmware | <1.9.0 | |
Dell G7 15 7500 Firmware | ||
Dell G7 17 7700 Firmware | <1.9.0 | |
Dell G7 17 7700 | ||
Dell Inspiron 14 5418 Firmware | <2.1.0_a06 | |
Dell Inspiron 14 5418 Firmware | ||
Dell Inspiron 15 5518 Firmware | <2.1.0_a06 | |
Dell Inspiron 15 5518 Firmware | ||
Dell Inspiron 7510 Firmware | <1.0.4 | |
Dell Inspiron 15 7510 Firmware | ||
Dell Inspiron 3501 Firmware | <1.6.0 | |
Dell Inspiron 3501 Firmware | ||
Dell Inspiron 3880 Firmware | <1.4.1 | |
Dell Inspiron 3880 Firmware | ||
Dell Inspiron 3881 | <1.4.1 | |
Dell Inspiron 3881 | ||
Dell Inspiron 3891 Firmware | <1.0.11 | |
Dell Inspiron 3891 | ||
Dell Inspiron 5300 Firmware | <1.7.1 | |
Dell Inspiron 5300 Firmware | ||
Dell Inspiron 5301 Firmware | <1.8.1 | |
Dell Inspiron 5301 Firmware | ||
Dell Inspiron 13 5310 Firmware | <2.1.0 | |
Dell Inspiron 13 5310 | ||
Dell Inspiron 5400 2-in-1 Firmware | <1.7.0 | |
Dell Inspiron 5400 2-in-1 Firmware | ||
Dell Inspiron 5400 AIO | <1.4.0 | |
Dell Inspiron 5400 | ||
Dell Inspiron 5401 AIO Firmware | <1.7.2 | |
Dell Inspiron 5401 AIO | ||
Dell Inspiron 5401 AIO | <1.4.0 | |
Dell Inspiron 5401 All-in-One | ||
Dell Inspiron 5402 Firmware | <1.5.1 | |
Dell Inspiron 5402 | ||
Dell Inspiron 5406 2-in-1 Firmware | <1.5.1 | |
Dell Inspiron 5406 2-in-1 | ||
Dell Inspiron 5408 Firmware | <1.7.2 | |
Dell Inspiron 5408 Firmware | ||
Dell Inspiron 5409 Firmware | <1.5.1 | |
Dell Inspiron 5409 Firmware | ||
Dell Inspiron 5410 Firmware | <2.1.0 | |
Dell Inspiron 14 5410 2-in-1 | ||
Dell Inspiron 5501 Firmware | <1.7.2 | |
Dell Inspiron 5501 | ||
Dell Inspiron 5502 Firmware | <1.5.1 | |
Dell Inspiron 5502 Firmware | ||
Dell Inspiron 5508 Firmware | <1.7.2 | |
Dell Inspiron 5508 Firmware | ||
Dell Inspiron 5509 Firmware | <1.5.1 | |
Dell Inspiron 5509 | ||
Dell Inspiron 7300 Firmware | <1.8.1 | |
Dell Inspiron 7300 | ||
Dell Inspiron 7300 Firmware | <1.3.0 | |
Dell Inspiron 7300 | ||
Dell Inspiron 7306 2-in-1 firmware | <1.5.1 | |
Dell Inspiron 7306 2-in-1 firmware | ||
Dell Inspiron 7400 Firmware | <1.8.1 | |
Dell Inspiron 7400 Firmware | ||
Dell Inspiron 7500 Firmware | <1.8.0 | |
Dell Inspiron 7500 Firmware | ||
Dell Inspiron 7500 Firmware | <1.3.0 | |
Dell Inspiron 7500 2-in-1 Firmware | ||
Dell Inspiron 7501 Firmware | <1.8.0 | |
Dell Inspiron 7501 Firmware | ||
Dell Inspiron 7506 Firmware | <1.5.1 | |
Dell Inspiron 7506 Firmware | ||
Dell Inspiron 16 7610 Firmware | <1.0.4 | |
Dell Inspiron 16 7610 Firmware | ||
Dell Inspiron 7700 All-in-One Firmware | <1.4.0 | |
Dell Inspiron 7700 | ||
Dell Inspiron 7706 2-in-1 Firmware | <1.5.1 | |
Dell Inspiron 7706 2-in-1 | ||
Dell Latitude 3120 Firmware | <1.1.0 | |
Dell Latitude 3120 Firmware | ||
Dell Latitude 3320 Firmware | <1.4.0 | |
Dell Latitude 3320 Firmware | ||
Dell Latitude 3410 Firmware | <1.9.0 | |
Dell Latitude 3410 | ||
Dell Latitude 3420 Firmware | <1.8.0 | |
Dell Latitude 3420 Firmware | ||
Dell Latitude 3510 Firmware | <1.9.0 | |
Dell Latitude 3510 Firmware | ||
Dell Latitude 3520 Firmware | <1.8.0 | |
Dell Latitude 3520 Firmware | ||
Dell Latitude 5310 Firmware | <1.7.0 | |
Dell Latitude 5310 Firmware | ||
Dell Latitude 5310 2-in-1 Firmware | <1.7.0 | |
Dell Latitude 5310 | ||
Dell Latitude 5320 Firmware | <1.7.1 | |
Dell Latitude 5320 Firmware | ||
Dell Latitude 5320 2-in-1 firmware | <1.7.1 | |
Dell Latitude 5320 2-in-1 firmware | ||
Dell Latitude 5410 Firmware | <1.6.0 | |
Dell Latitude 5410 Firmware | ||
Dell Latitude 5411 Firmware | <1.6.0 | |
Dell Latitude 5411 Firmware | ||
Dell Latitude Rugged 5420 Firmware | <1.8.0 | |
Dell Latitude 5420 Firmware | ||
Dell Latitude 5510 Firmware | <1.6.0 | |
Dell Latitude 5510 Firmware | ||
Dell Latitude 5511 Firmware | <1.6.0 | |
Dell Latitude 5511 Firmware | ||
Dell Latitude 5520 Firmware | <1.7.1 | |
Dell Latitude 5520 Firmware | ||
Dell Latitude 5521 Firmware | <1.3.0_a03 | |
Dell Latitude 5521 Firmware | ||
Dell Latitude 7210 2-in-1 Firmware | <1.7.0 | |
Dell Latitude 7210 | ||
Dell Latitude 7310 Firmware | <1.7.0 | |
Dell Latitude 7310 Firmware | ||
Dell Latitude 7320 Detachable Firmware | <1.7.1 | |
Dell Latitude 7320 Firmware | ||
Dell Latitude 7320 Detachable Firmware | <1.4.0_a04 | |
Dell Latitude 7320 Detachable Firmware | ||
Dell Latitude 7410 Firmware | <1.7.0 | |
Dell Latitude 7410 Firmware | ||
Dell Latitude 7420 Firmware | <1.7.1 | |
Dell Latitude 7420 Firmware | ||
Dell Latitude 7520 Firmware | <1.7.1 | |
Dell Latitude 7520 Firmware | ||
Dell Latitude 9410 Firmware | <1.7.0 | |
Dell Latitude 9410 Firmware | ||
Dell Latitude 9420 Firmware | <1.4.1 | |
Dell Latitude 9420 Firmware | ||
Dell Latitude 9510 Firmware | <1.6.0 | |
Dell Latitude 9510 Firmware | ||
Dell Latitude 9520 Firmware | <1.5.2 | |
Dell Latitude 9520 Firmware | ||
Dell Latitude 5421 Firmware | <1.3.0_a03 | |
Dell Latitude 5421 Firmware | ||
Dell OptiPlex 3080 Firmware | <2.1.1 | |
Dell OptiPlex 3080 Firmware | ||
Dell OptiPlex 3090 Firmware | <1.2.0 | |
Dell OptiPlex 3090 UFF Firmware | ||
Dell OptiPlex 3280 AIO Firmware | <1.7.0 | |
Dell OptiPlex 3280 All-in-One Firmware | ||
Dell OptiPlex 5080 Firmware | <1.4.0 | |
Dell OptiPlex 5080 Firmware | ||
Dell OptiPlex 5090 Firmware | <1.1.35 | |
Dell OptiPlex 5090 | ||
Dell OptiPlex 5490 All-in-One Firmware | <1.3.0 | |
Dell OptiPlex 5490 All-in-One | ||
Dell OptiPlex 7080 Firmware | <1.4.0 | |
Dell OptiPlex 7080 Firmware | ||
Dell OptiPlex 7090 Tower Firmware | <1.1.35 | |
Dell OptiPlex 7090 Tower Firmware | ||
Dell OptiPlex 7090 Ultra Firmware | <1.2.0 | |
Dell OptiPlex 7090 UFF Firmware | ||
Dell OptiPlex 7480 All-in-One Firmware | <1.7.0 | |
Dell OptiPlex 7480 All-in-One Firmware | ||
Dell OptiPlex 7490 AIO Firmware | <1.3.0 | |
Dell OptiPlex 7490 AIO | ||
Dell OptiPlex 7780 AIO Firmware | <1.7.0 | |
Dell OptiPlex 7780 All-in-One Firmware | ||
Dell Precision 17 M5750 Firmware | <1.8.2 | |
Dell Precision 17 M5750 Firmware | ||
Dell Precision 3440 Firmware | <1.4.0 | |
Dell Precision 3440 Firmware | ||
Dell Precision 3450 Firmware | <1.1.35 | |
Dell Precision 3450 Firmware | ||
Dell Precision 3550 Firmware | <1.6.0 | |
Dell Precision 3550 Firmware | ||
Dell Precision 3551 Firmware | <1.6.0 | |
Dell Precision 3551 Firmware | ||
Dell Precision 3560 Firmware | <1.7.1 | |
Dell Precision 3560 Firmware | ||
Dell Precision 3561 Firmware | <1.3.0_a03 | |
Dell Precision 3561 Firmware | ||
Dell Precision 3640 Firmware | <1.6.2 | |
Dell Precision 3640 Firmware | ||
Dell Precision 3650 Firmware | <1.2.0 | |
Dell Precision 3650 Tower | ||
Dell Precision 5550 Firmware | <1.8.1 | |
Dell Precision 5550 Firmware | ||
Dell Precision 5560 Firmware | <1.3.2 | |
Dell Precision 5560 Firmware | ||
Dell Precision 5760 Firmware | <1.1.3 | |
Dell Precision 5760 Firmware | ||
Dell Precision 7550 Firmware | <1.8.0 | |
Dell Precision 7550 Firmware | ||
Dell Precision 7560 Firmware | <1.1.2 | |
Dell Precision 7560 Firmware | ||
Dell Precision 7750 Firmware | <1.8.0 | |
Dell Precision 7750 Firmware | ||
Dell Precision 7760 Firmware | <1.1.2 | |
Dell Precision 7780 | ||
Dell Vostro 14 5410 Firmware | <2.1.0_a06 | |
Dell Vostro 14 5410 Firmware | ||
Dell Vostro 5510 Firmware | <2.1.0_a06 | |
Dell Vostro 15 5510 | ||
Dell Vostro 15 7510 Firmware | <1.0.4 | |
Dell Vostro 15 7510 Firmware | ||
Dell Vostro 3400 Firmware | <1.6.0 | |
Dell Vostro 3400 Firmware | ||
Dell Vostro 3500 Firmware | <1.6.0 | |
Dell Vostro 3500 Firmware | ||
Dell Vostro 3501 Firmware | <1.6.0 | |
Dell Vostro 3501 Firmware | ||
Dell Vostro 3681 Firmware | <2.4.0 | |
Dell Vostro 3681 Firmware | ||
Dell Vostro 3690 Firmware | <1.0.11 | |
Dell Vostro 3690 Firmware | ||
Dell Vostro 3881 Firmware | <2.4.0 | |
Dell Vostro 3881 Firmware | ||
Dell Vostro 3888 Firmware | <2.4.0 | |
Dell Vostro 3888 Firmware | ||
Dell Vostro 3890 Firmware | <1.0.11 | |
Dell Vostro 3890 Firmware | ||
Dell Vostro 5300 Firmware | <1.7.1 | |
Dell Vostro 5300 Firmware | ||
Dell Vostro 5301 Firmware | <1.8.1 | |
Dell Vostro 5301 Firmware | ||
Dell Vostro 13 5310 Firmware | <2.1.0 | |
Dell Vostro 5310 Firmware | ||
Dell Vostro 5401 Firmware | <1.7.2 | |
Dell Vostro 5401 Firmware | ||
Dell Vostro 5402 Firmware | <1.5.1 | |
Dell Vostro 5402 Firmware | ||
Dell Vostro 5501 Firmware | <1.7.2 | |
Dell Vostro 5501 Firmware | ||
Dell Vostro 5502 Firmware | <1.5.1 | |
Dell Vostro 5502 Firmware | ||
Dell Vostro 5880 Firmware | <1.4.0 | |
Dell Vostro 5880 Firmware | ||
Dell Vostro 5890 Firmware | <1.0.11 | |
Dell Vostro 5890 Firmware | ||
Dell Vostro 7500 Firmware | <1.8.0 | |
Dell Vostro 7500 Firmware | ||
Dell XPS 13 9305 Firmware | <1.0.8 | |
Dell XPS 13 9305 Firmware | ||
Dell XPS 13 9310 2-in-1 | <2.3.3 | |
Dell XPS 13 9310 2-in-1 | ||
Dell XPS 13 2-in-1 9310 Firmware | <3.0.0 | |
Dell XPS 13 9310 Firmware | ||
Dell XPS 9500 Firmware | <1.8.1 | |
Dell XPS 15 9500 | ||
Dell XPS 15 9510 Firmware | <1.3.2 | |
Dell XPS 15 9510 Firmware | ||
Dell XPS 17 9700 Firmware | <1.8.2 | |
Dell XPS 17 9700 Firmware | ||
Dell XPS 17 9710 Firmware | <1.1.3 | |
Dell XPS 17 9710 Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-21571 has been classified as a medium severity vulnerability.
The fix for CVE-2021-21571 involves updating the affected Dell firmware to the latest version that addresses the certificate validation issue.
CVE-2021-21571 affects various Dell products including specific firmware versions of Alienware, Inspiron, G-series, Vostro, and Precision models.
Exploitation of CVE-2021-21571 could allow an unauthenticated attacker to perform a person-in-the-middle attack, potentially leading to denial-of-service conditions.
Yes, CVE-2021-21571 can be exploited remotely without authentication due to improper certificate validation in the Dell UEFI BIOS stack.