First published: Wed Feb 14 2024(Updated: )
In Dell SupportAssist for Home PCs (between v3.0 and v3.14.1) and SupportAssist for Business PCs (between v3.0 and v3.4.1), a security concern has been identified, impacting locally authenticated users on their respective PCs. This issue may potentially enable privilege escalation and the execution of arbitrary code, in the Windows system context, and confined to that specific local PC.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell SupportAssist for Business PCs | >=3.0<3.5.0 | |
Dell SupportAssist for Home PCs | >=3.0<3.14.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-44283 has been rated as a moderate severity vulnerability due to its potential for privilege escalation.
To fix CVE-2023-44283, users should update Dell SupportAssist for Home PCs to version 3.14.2 or later, and for Business PCs to version 3.5.0 or later.
CVE-2023-44283 affects locally authenticated users of Dell SupportAssist for Home PCs versions 3.0 to 3.14.1 and SupportAssist for Business PCs versions 3.0 to 3.4.1.
CVE-2023-44283 is a privilege escalation vulnerability that allows local users to gain higher access rights.
CVE-2023-44283 was reported as part of security updates for Dell SupportAssist in late 2023.