BOOK THIS SPACE FOR AD
ARTICLE AD25. June 2021
This article has been indexed from Softpedia News / Security
Due to Dell’s flawed update method, hackers may be able to exploit four separate vulnerabilities in order to gain complete control of affected devices. This issue affects 129 tablets, laptops, and PCs, all of which being protected by Secure Boot. The security flaws have a CVSS rating of 8.3 out of 10, says Threat Post.
According to Eclypsium researchers, the flaws allow privileged network attackers to bypass Secure Boot protections, affect the device boot, subvert the OS system and higher-layer security controls. They estimated that 30 million Dell devices are affected worldwide.
Dell began releasing patches for some of its devices yesterday, with more to follow next month.
The flaw is in a utility feature called BIOSConnect, which is used to do remote OS recoveries or firmware updates on the device. Dell SupportAssist, a support tool that comes preloaded on these devices, comes …