CVE-2024-38305: High severity dell supportassist vulnerability
Dell SupportAssist for Home PCs Installer exe version 4.0.3 contains a privilege escalation vulnerability in the installer. A local low-privileged authenticated attacker could potentially exploit this vulnerability, leading to the execution of arbitrary executables on the operating system with elevated privileges.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-38305?
CVE-2024-38305 has been identified as a privilege escalation vulnerability which can allow an attacker to execute arbitrary executables on the operating system.
How do I fix CVE-2024-38305?
To fix CVE-2024-38305, update Dell SupportAssist for Home PCs to the latest version released by Dell.
Who is affected by CVE-2024-38305?
Users of Dell SupportAssist for Home PCs version 4.0.3 are affected by CVE-2024-38305.
What type of attack does CVE-2024-38305 facilitate?
CVE-2024-38305 facilitates local privilege escalation attacks that can be executed by authenticated low-privileged users.
When was CVE-2024-38305 discovered?
CVE-2024-38305 was publicly disclosed recently as part of a security update from Dell.