First published: Fri Feb 10 2023(Updated: )
SupportAssist for Home PCs (version 3.11.4 and prior) and SupportAssist for Business PCs (version 3.2.0 and prior) contain cryptographic weakness vulnerability. An authenticated non-admin user could potentially exploit the issue and obtain sensitive information.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell SupportAssist for Business PCs | <=3.2.0 | |
Dell SupportAssist for Home PCs | <=3.11.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2022-34385.
SupportAssist for Home PCs (version 3.11.4 and prior) and SupportAssist for Business PCs (version 3.2.0 and prior) are affected.
The severity of CVE-2022-34385 is medium with a CVSS score of 5.5.
An authenticated non-admin user could potentially exploit this vulnerability to obtain sensitive information.
To mitigate this vulnerability, update SupportAssist for Home PCs to version 3.11.5 or later, and update SupportAssist for Business PCs to version 3.2.1 or later.