Skip to main content
  • Place orders quickly and easily
  • View orders and track your shipping status
  • Enjoy members-only rewards and discounts
  • Create and access a list of your products
  • Manage your Dell EMC sites, products, and product-level contacts using Company Administration.

Article Number: 000184608


DSA-2021-059: Dell System Update (DSU) Security Update for Denial of Service Vulnerability.

Summary: Dell System Update (DSU) is updated to address a vulnerability that may be exploited to compromise the affected system.

Article Content


Impact

Low

Details

 
Proprietary Code CVE(s)   Description CVSS Base Score CVSS Vector String
CVE-2021-21529 Dell System Update (DSU) 1.9 and earlier versions contain a denial of service vulnerability. A local authenticated malicious user with low privileges may potentially exploit this vulnerability to cause the system to run out of memory by running multiple instances of the vulnerable application. 3.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:L
 
Proprietary Code CVE(s)   Description CVSS Base Score CVSS Vector String
CVE-2021-21529 Dell System Update (DSU) 1.9 and earlier versions contain a denial of service vulnerability. A local authenticated malicious user with low privileges may potentially exploit this vulnerability to cause the system to run out of memory by running multiple instances of the vulnerable application. 3.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:L
Dell Technologies recommends all customers consider both the CVSS base score and any relevant temporal and environmental scores that may impact the potential severity associated with a particular security vulnerability.

Affected Products and Remediation

 
Product Affected Version(s) Updated Version(s) Link to Update
Dell System Update (DSU) Versions prior to 1.9
1.9.1
https://www.dell.com/support/home/en-in/drivers/driversdetails?driverid=55r7t&oscode=wst14&
 
 
Product Affected Version(s) Updated Version(s) Link to Update
Dell System Update (DSU) Versions prior to 1.9
1.9.1
https://www.dell.com/support/home/en-in/drivers/driversdetails?driverid=55r7t&oscode=wst14&
 

Acknowledgements

CVE-2021-21529: Dell EMC would like to thank Umeå universitet for reporting this vulnerability.
 

Revision History

RevisionDateDescription
1.02020-03-25Initial Release

Related Information


Article Properties


Affected Product

Dell System Update, Dell System Update v1.3, Dell System update v1.3.1, Dell System Update v1.1, Dell System Update v1.2, Product Security Information, Dell System update v1.4.0

Last Published Date

25 Mar 2021

Article Type

Dell Security Advisory