CVE-2024-37137: Medium severity dell key trust platform vulnerability
Dell Key Trust Platform, v3.0.6 and prior, contains Use of a Cryptographic Primitive with a Risky Implementation vulnerability. A local privileged attacker could potentially exploit this vulnerability, leading to privileged information disclosure.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-37137?
CVE-2024-37137 is considered a medium severity vulnerability that could allow local privileged attackers to disclose sensitive information.
How do I fix CVE-2024-37137?
To fix CVE-2024-37137, update the Dell Key Trust Platform to version 3.0.7 or later.
What types of information could be disclosed due to CVE-2024-37137?
CVE-2024-37137 could potentially allow privileged attackers to access sensitive information stored within the affected application.
Which versions of Dell Key Trust Platform are affected by CVE-2024-37137?
CVE-2024-37137 affects Dell Key Trust Platform versions up to and including 3.0.6.
Is Dell CloudLink also vulnerable to CVE-2024-37137?
Yes, Dell CloudLink is also vulnerable to CVE-2024-37137, specifically up to version 7.1.9.