First published: Fri Feb 10 2023(Updated: )
Dell SupportAssist for Home PCs (version 3.11.4 and prior) and SupportAssist for Business PCs (version 3.2.0 and prior) contain a privilege escalation vulnerability. A local authenticated malicious user could potentially exploit this vulnerability to elevate privileges and gain total control of the system.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell SupportAssist for Business PCs | <=3.2.0 | |
Dell SupportAssist for Home PCs | <=3.11.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-34387 is high.
The affected software for CVE-2022-34387 is Dell SupportAssist for Home PCs (version 3.11.4 and prior) and SupportAssist for Business PCs (version 3.2.0 and prior).
A local malicious user could potentially exploit CVE-2022-34387 to elevate privileges and gain total control of the system.
You can find more information about CVE-2022-34387 on the Dell support website: https://www.dell.com/support/kbdoc/000204114
The Common Weakness Enumeration (CWE) for CVE-2022-34387 is CWE-668 and CWE-377.