Skip to main content
  • Place orders quickly and easily
  • View orders and track your shipping status
  • Enjoy members-only rewards and discounts
  • Create and access a list of your products
  • Manage your Dell EMC sites, products, and product-level contacts using Company Administration.
Some article numbers may have changed. If this isn't what you're looking for, try searching all articles. Search articles

Article Number: 000208327


DSA-2023-044: Dell Alienware Command Center Security Update for a Local Privilege Escalation Vulnerability

Summary: Dell Alienware Command Center remediation is available for a Local Privilege Escalation vulnerability that may be exploited by malicious users to compromise the affected system.

Article Content


Impact

High

Details

Proprietary Code CVEs Description More Information
CVE-2023-24569 Dell Alienware Command Center versions 5.5.37.0 and prior contain an Improper Input validation vulnerability. A local authenticated malicious user could potentially send malicious input to a named pipe in order to elevate privileges on the system.

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H This hyperlink is taking you to a website outside of Dell Technologies.

See NVD (http://nvd.nist.gov/ This hyperlink is taking you to a website outside of Dell Technologies.) for additional details.

Proprietary Code CVEs Description More Information
CVE-2023-24569 Dell Alienware Command Center versions 5.5.37.0 and prior contain an Improper Input validation vulnerability. A local authenticated malicious user could potentially send malicious input to a named pipe in order to elevate privileges on the system.

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H This hyperlink is taking you to a website outside of Dell Technologies.

See NVD (http://nvd.nist.gov/ This hyperlink is taking you to a website outside of Dell Technologies.) for additional details.

Dell Technologies recommends all customers consider both the CVSS base score and any relevant temporal and environmental scores that may impact the potential severity associated with a particular security vulnerability.

Affected Products and Remediation

Product Affected Versions Updated Versions Link to Update
Alienware Command Center Versions before 5.5.37.0 5.5.40.0

Alienware Command Center for Windows 11 and Windows 10 64-bit

Alienware Command Center Application
Alienware Command Center Application
 

Product Affected Versions Updated Versions Link to Update
Alienware Command Center Versions before 5.5.37.0 5.5.40.0

Alienware Command Center for Windows 11 and Windows 10 64-bit

Alienware Command Center Application
Alienware Command Center Application
 

Acknowledgements

CVE-2023-24569: Dell Technologies would like to thank Johannes Hatting for reporting this issue. 

Revision History

RevisionDateDescription
1.02023-02-09Initial Release
2.02024-06-20Updated Alienware Command Center Application link in Affected Products and Remediation section

Related Information


Article Properties


Affected Product

Alienware Command Center, Product Security Information

Last Published Date

20 Jun 2024

Article Type

Dell Security Advisory