Kwetsbaarheid

Dell Driver Vulnerabilities

This blog contains information about the Dell drivers vulnerabilities. As soon as we have an update, we’ll add it to this post. More information about possible risks and details can be found at the bottom of this blog.

Clip path group@2x

T-Update

Informatie over kwetsbaarheden

This blog contains information about the Dell drivers vulnerabilities. As soon as we have an update, we’ll add it to this post. More information about possible risks and details can be found at the bottom of this blog.

Update May 5, 2021

18:00 | A vulnerability has been found in one of Dell’s kernel drivers labeled CVE-2021-21551. This vulnerability affects hundreds of models, which can be found in the tables on the page of the patch. The error concerns an incorrectly implemented access control, which can cause “privilege escalation”, “denial of service” or “information disclosure”.

Attention: Patching only solves part of the problem, as the problem can be re-occur after a backup has been put back. In addition to patching, it is therefor recommended to set the monitoring for the reappearance of the file ‘dbutil_2_3.sys’.

Cyberveiligheid op maat

Achtergrond

The following CVE references belong to this vulnerability. Patch available for CVE-2021-21551

Risico

There is a patch from Dell that only partially fixes the problem, however. The problem or danger is mainly that if someone makes (or has) a backup, the bug will be available again through a downgrade attack. After the patch (mainly in temporary directories such as TEMP), the file dbutil_2_3.sys can be regarded as an Indicator of Compromise.

Advies

Bronnen

Learn more about Dell Driver vulnerabilities on this external source.

Ellipse 6

Schrijf je in voor T-Updates

Ontvang elke woensdag het laatste nieuws over malware of kwetsbaarheden in je mail

More than 1,000 organizations have already joined us.

Tesorion uses your data to send the requested information. In addition, your data may be used for commercial follow-up. You can unsubscribe from this at any time via the link in the email. For more information, read our privacy policy.

Opt-in-EN
Ellipse 6