DSA-2026-197: Security Update for Dell Client Platform BIOS for a Weak Encoding for Password Vulnerability
Zusammenfassung: Dell Client Platform BIOS remediation is available for a Weak Encoding for Password vulnerability that could be exploited by malicious users to compromise the affected system.
Auswirkungen
Medium
Details
|
Proprietary Code CVEs |
Description |
CVSS Base Score |
CVSS Vector String |
|
CVE-2026-40639 |
Dell Client Platform BIOS contains a Weak Encoding for Password vulnerability. An unauthenticated attacker with physical access could potentially exploit this vulnerability, leading to Elevation of Privileges. |
5.7 |
|
Proprietary Code CVEs |
Description |
CVSS Base Score |
CVSS Vector String |
|
CVE-2026-40639 |
Dell Client Platform BIOS contains a Weak Encoding for Password vulnerability. An unauthenticated attacker with physical access could potentially exploit this vulnerability, leading to Elevation of Privileges. |
5.7 |
Betroffene Produkte und Korrektur
|
Product |
Software/Firmware |
Affected Version |
Remediated Version |
Release Date (MM/DD/YYYY) |
Link |
|
Dell Edge Gateway 3000 |
BIOS |
Versions prior to 1.26.0 |
Version 1.26.0 or later |
06/09/2026 |
|
|
Dell Edge Gateway 5000 |
BIOS |
Versions prior to 1.36.0 |
Version 1.36.0 or later |
06/09/2026 |
|
|
DELL EMBEDDED PC 3000 |
BIOS |
Versions prior to 1.32.0 |
Version 1.32.0 or later |
06/09/2026 |
|
|
DELL EMBEDDED PC 5000 |
BIOS |
Versions prior to 1.33.0 |
Version 1.33.0 or later |
06/09/2026 |
|
|
Dell Precision 3630 Tower |
BIOS |
Versions prior to 2.40.0 |
Version 2.40.0 or later |
06/04/2026 |
|
|
Dell Precision 3930 Rack |
BIOS |
Versions prior to 2.43.0 |
Version 2.43.0 or later |
06/04/2026 |
|
|
Latitude 7220 Rugged Extreme |
BIOS |
Versions prior to 1.51.0 |
Version 1.51.0 or later |
06/08/2026 |
|
|
Latitude Rugged 5420 |
BIOS |
Versions prior to 1.42.0 |
Version 1.42.0 or later |
06/08/2026 |
|
|
Latitude Rugged 5424 |
BIOS |
Versions prior to 1.42.0 |
Version 1.42.0 or later |
06/08/2026 |
|
|
Latitude Rugged 7220EX |
BIOS |
Versions prior to 1.51.0 |
Version 1.51.0 or later |
06/08/2026 |
|
|
Latitude Rugged 7424 |
BIOS |
Versions prior to 1.42.0 |
Version 1.42.0 or later |
06/08/2026 |
|
|
Precision 3930 Rack |
BIOS |
Versions prior to 2.43.0 |
Version 2.43.0 or later |
06/04/2026 |
|
Product |
Software/Firmware |
Affected Version |
Remediated Version |
Release Date (MM/DD/YYYY) |
Link |
|
Dell Edge Gateway 3000 |
BIOS |
Versions prior to 1.26.0 |
Version 1.26.0 or later |
06/09/2026 |
|
|
Dell Edge Gateway 5000 |
BIOS |
Versions prior to 1.36.0 |
Version 1.36.0 or later |
06/09/2026 |
|
|
DELL EMBEDDED PC 3000 |
BIOS |
Versions prior to 1.32.0 |
Version 1.32.0 or later |
06/09/2026 |
|
|
DELL EMBEDDED PC 5000 |
BIOS |
Versions prior to 1.33.0 |
Version 1.33.0 or later |
06/09/2026 |
|
|
Dell Precision 3630 Tower |
BIOS |
Versions prior to 2.40.0 |
Version 2.40.0 or later |
06/04/2026 |
|
|
Dell Precision 3930 Rack |
BIOS |
Versions prior to 2.43.0 |
Version 2.43.0 or later |
06/04/2026 |
|
|
Latitude 7220 Rugged Extreme |
BIOS |
Versions prior to 1.51.0 |
Version 1.51.0 or later |
06/08/2026 |
|
|
Latitude Rugged 5420 |
BIOS |
Versions prior to 1.42.0 |
Version 1.42.0 or later |
06/08/2026 |
|
|
Latitude Rugged 5424 |
BIOS |
Versions prior to 1.42.0 |
Version 1.42.0 or later |
06/08/2026 |
|
|
Latitude Rugged 7220EX |
BIOS |
Versions prior to 1.51.0 |
Version 1.51.0 or later |
06/08/2026 |
|
|
Latitude Rugged 7424 |
BIOS |
Versions prior to 1.42.0 |
Version 1.42.0 or later |
06/08/2026 |
|
|
Precision 3930 Rack |
BIOS |
Versions prior to 2.43.0 |
Version 2.43.0 or later |
06/04/2026 |
Revisionsverlauf
"
| Revision | Date | Description |
|---|---|---|
| 1.0 | 2026-06-09 | Initial Release |
Danksagung
Dell would like to thank Darren McDonald from AmberWolf and Craig S. Blackie from MDSec for reporting this issue.