HIGH · 8.8

CVE-2021-21551

Dell dbutil_2_3.sys driver contains an insufficient access control vulnerability which may lead to escalation of privileges, denial of service, or information disclosure. Local authenticated user acce...

Vulnerability Description

Dell dbutil_2_3.sys driver contains an insufficient access control vulnerability which may lead to escalation of privileges, denial of service, or information disclosure. Local authenticated user access is required.

CVSS Score

8.8

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
CHANGED
Confidentiality
HIGH
Integrity
HIGH
Availability
HIGH

Affected Products

VendorProductVersions
DellDbutil<= 2.3
DellAlienware 14-
DellAlienware 17 51M R2-
DellAlienware Area 51-
DellAlienware Asm100-
DellAlienware Asm100R2-
DellAlienware M14Xr2-
DellAlienware M15 R4-
DellAlienware M17Xr4-
DellAlienware M18Xr2-
DellCanvas 27-
DellCheng Ming 3967-
DellChengming 3967-
DellChengming 3977-
DellChengming 3980-
DellChengming 3988-
DellChengming 3990-
DellChengming 3991-
DellDock Wd15-
DellDock Wd19-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2021-21551?

CVE-2021-21551 is a vulnerability with a CVSS score of 8.8 (HIGH). Dell dbutil_2_3.sys driver contains an insufficient access control vulnerability which may lead to escalation of privileges, denial of service, or information disclosure. Local authenticated user acce...

How severe is CVE-2021-21551?

CVE-2021-21551 has been rated HIGH with a CVSS base score of 8.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2021-21551?

Check the references section above for vendor advisories and patch information. Affected products include: Dell Dbutil, Dell Alienware 14, Dell Alienware 17 51M R2, Dell Alienware Area 51, Dell Alienware Asm100.