DSA-2024-169: Security Update for Dell Command | Update, Dell Update, and Alienware Update for an Exposed Dangerous Method or Function Vulnerability
Resumen: Dell Command | Update, Dell Update and Alienware Update remediation is available for an Exposed Dangerous Method or Function vulnerability that could be exploited by malicious users to compromise the affected system. ...
Este artículo se aplica a:
Este artículo no se aplica a:
Este artículo no está vinculado a ningún producto específico.
En este artículo no se identifican todas las versiones de los productos.
Impacto
Medium
Detalles
| Proprietary Code CVEs |
Description | CVSS Base Score | CVSS Vector String |
|---|---|---|---|
| CVE-2024-28962 | Dell Command | Update, Dell Update, and Alienware Update UWP, versions prior to 5.4, contain an Exposed Dangerous Method or Function vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to denial of service. | 6.5 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L |
| Proprietary Code CVEs |
Description | CVSS Base Score | CVSS Vector String |
|---|---|---|---|
| CVE-2024-28962 | Dell Command | Update, Dell Update, and Alienware Update UWP, versions prior to 5.4, contain an Exposed Dangerous Method or Function vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to denial of service. | 6.5 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L |
Productos afectados y corrección
| Product | Software/Firmware | Affected Versions | Remediated Versions | Release Date (MM/DD/YYYY) | Link |
|---|---|---|---|---|---|
| Dell Command | Update | Application | Versions prior to 5.4 | Version 5.4 and later | 07/31/2024 | Universal Windows Platform version for Windows 11, Windows 10 32-bit and 64-bit Dell Command | Update Windows Universal Application | Driver Details |
| Dell Command | Update | Application | Versions prior to 5.4 | Version 5.4 and later | 07/31/2024 | Universal Windows Platform version for Windows 11 ARM64 Dell Command | Update Windows Universal Application | Driver Details |
| Dell Update | Application | Versions prior to 5.4 | Version 5.4 and later | 07/31/2024 | Universal Windows Platform version for Windows 11, Windows 10 32-bit and 64-bit Dell Update Windows Universal Application | Driver Details |
| Alienware Update | Application | Versions prior to 5.4 | Version 5.4 and later | 07/31/2024 | Universal Windows Platform version for Windows 11, Windows 10 32-bit, 64-bit Dell/Alienware Update Application | Driver Details |
| Product | Software/Firmware | Affected Versions | Remediated Versions | Release Date (MM/DD/YYYY) | Link |
|---|---|---|---|---|---|
| Dell Command | Update | Application | Versions prior to 5.4 | Version 5.4 and later | 07/31/2024 | Universal Windows Platform version for Windows 11, Windows 10 32-bit and 64-bit Dell Command | Update Windows Universal Application | Driver Details |
| Dell Command | Update | Application | Versions prior to 5.4 | Version 5.4 and later | 07/31/2024 | Universal Windows Platform version for Windows 11 ARM64 Dell Command | Update Windows Universal Application | Driver Details |
| Dell Update | Application | Versions prior to 5.4 | Version 5.4 and later | 07/31/2024 | Universal Windows Platform version for Windows 11, Windows 10 32-bit and 64-bit Dell Update Windows Universal Application | Driver Details |
| Alienware Update | Application | Versions prior to 5.4 | Version 5.4 and later | 07/31/2024 | Universal Windows Platform version for Windows 11, Windows 10 32-bit, 64-bit Dell/Alienware Update Application | Driver Details |
Soluciones alternativas y mitigaciones
None
Historial de revisiones
| Revision | Date | Description |
|---|---|---|
| 1.0 | 2024-08-05 | Initial Release |
| 2.0 | 2024-08-06 | Updated for enhanced presentation with no changes to content. |
Agradecimientos
CVE-2024-28962: Dell Technologies would like to thank Skyler Ferrante for reporting this issue.
Información relacionada
Aviso legal
Productos afectados
Alienware Update, Dell Command | Update, Dell UpdatePropiedades del artículo
Número de artículo: 000227236
Tipo de artículo: Dell Security Advisory
Última modificación: 06 ago 2024
Encuentra las respuestas que necesitas con la ayuda de otros usuarios de Dell
Servicios de asistencia
Comprueba si tu dispositivo está cubierto por los servicios de asistencia.