CVE-2023-25535: High severity dell supportassist vulnerability
Published Feb 14, 2024
·Updated
Dell SupportAssist for Home PCs Installer Executable file version prior to 3.13.2.19 used for initial installation has a high vulnerability that can result in local privilege escalation (LPE). This vulnerability only affects first-time installations done prior to 8th March 2023
Affected Software
1 affected component
Dell SupportAssist for Home PCs<3.13.2.19
Event History
Feb 14, 2024
CVE Published
via MITRE·07:23 AM
Data Sourced
via MITRE·07:23 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·08:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-25535?
CVE-2023-25535 has a high severity level due to its potential for local privilege escalation.
2
How do I fix CVE-2023-25535?
To fix CVE-2023-25535, update Dell SupportAssist for Home PCs to version 3.13.2.19 or later.
3
Who is affected by CVE-2023-25535?
CVE-2023-25535 affects users who installed Dell SupportAssist for Home PCs version prior to 3.13.2.19 before March 8, 2023.
4
What type of vulnerability is CVE-2023-25535?
CVE-2023-25535 is a local privilege escalation vulnerability impacting the installation executable.
5
When was CVE-2023-25535 disclosed?
CVE-2023-25535 was disclosed on or before March 8, 2023.