Ir al contenido principal
  • Realice pedidos rápida y fácilmente.
  • Vea los pedidos y haga el seguimiento del estado del envío.
  • Cree una lista de sus productos y acceda a ella

DSA-2023-074: Dell Trusted Device Agent Security Update for an Improper Installation Permissions Vulnerability

Resumen: Dell Trusted Device Agent remediation is available for an improper installation permissions vulnerability that could be exploited by malicious users to compromise the affected system.

Este artículo se aplica a:   Este artículo no se aplica a: 

Impacto

High

Detalles

Proprietary Code CVE(s) Description CVSS Base Score CVSS Vector String
CVE-2023-25542 Dell Trusted Device Agent, versions prior to 5.3.0, contain(s) an improper installation permissions vulnerability. An unauthenticated local attacker could potentially exploit this vulnerability, leading to escalated privileges. 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:HThis hyperlink is taking you to a website outside of Dell Technologies.
Proprietary Code CVE(s) Description CVSS Base Score CVSS Vector String
CVE-2023-25542 Dell Trusted Device Agent, versions prior to 5.3.0, contain(s) an improper installation permissions vulnerability. An unauthenticated local attacker could potentially exploit this vulnerability, leading to escalated privileges. 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:HThis hyperlink is taking you to a website outside of Dell Technologies.
Dell Technologies recomienda que todos los clientes tengan en cuenta la puntuación base CVSS y las puntuaciones temporales o de entorno relevantes que puedan afectar a la posible gravedad asociada a una determinada vulnerabilidad de seguridad.

Productos afectados y corrección

CVE(s) Addressed Product Affected Version(s) Updated Version(s) Link to Update
CVE-2023-25542 Dell Trusted Device Agent Versions prior to 5.3.0
 
5.3.0 https://www.dell.com/support/home/product-support/product/trusted-device/drivers
CVE(s) Addressed Product Affected Version(s) Updated Version(s) Link to Update
CVE-2023-25542 Dell Trusted Device Agent Versions prior to 5.3.0
 
5.3.0 https://www.dell.com/support/home/product-support/product/trusted-device/drivers

Soluciones alternativas y mitigaciones

Uninstall and re-install Dell Trusted Device Agent with default settings.

Historial de revisiones

RevisionDateDescription
1.02023-04-04Initial Release

Agradecimientos

CVE-2023-25542: Dell Technologies would like to thank Marius Gabriel Mihai for reporting this issue.

Información relacionada

Productos afectados

Product Security Information, Dell Trusted Device