CVE-2021-21551
Dell dbutil_2_3.sys driver contains an insufficient access control vulnerability which may lead to escalation of privileges, denial of service, or information disclosure. Local authenticated user access is required.
Actively exploited
- In the CISA exploited-vulnerabilities catalogue since Mar 31, 2022
- US federal agencies must remediate it by Apr 21, 2022 (BOD 22-01)
- First attack observed 330 days after disclosure
Apply updates per vendor instructions.
Source: CISA KEV · Jul 15, 2024 May 22, 2024 Mar 24, 2023 Mar 20, 2023 Mar 9, 2023 Mar 7, 2023
CVSS score8.8 / 10
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:HWeakness type (CWE)CWE-782
Vendorsdell
Affected products
| Vendors | Prodotto | Versioni |
|---|---|---|
| dell | dbutil | <= 2.3 |
| dell | alienware 14 | - |
| dell | alienware 17 51m r2 | - |
| dell | alienware area 51 | - |
| dell | alienware asm100 | - |
| dell | alienware asm100r2 | - |
| dell | alienware m14xr2 | - |
| dell | alienware m15 r4 | - |
| dell | alienware m17xr4 | - |
| dell | alienware m18xr2 | - |
| dell | canvas 27 | - |
| dell | cheng ming 3967 | - |
| dell | chengming 3967 | - |
| dell | chengming 3977 | - |
| dell | chengming 3980 | - |
| dell | chengming 3988 | - |
| dell | chengming 3990 | - |
| dell | chengming 3991 | - |
| dell | dock wd15 | - |
| dell | dock wd19 | - |
| dell | embedded box pc 5000 | - |
| dell | g15 5510 | - |
| dell | g3 3500 | - |
| dell | g3 3579 | - |
| dell | g3 3779 | - |
Related articles
This product uses the NVD API but is not endorsed or certified by the NVD.
