Friday, April 25, 2025
HomeCVE/vulnerabilityHundreds of Millions of Dell Systems Vulnerable to Hack Due to...

Hundreds of Millions of Dell Systems Vulnerable to Hack Due to Driver Bug

Published on

SIEM as a Service

Follow Us on Google News

The cybersecurity researchers have detected a set of five high-severity flaws in hundred of millions of Dell’s firmware update. The set of Five high-severity flaws is affecting Dell computers, laptops, notebooks, and tablets.

The security researchers at SentinelOne’s SentinelLabs declared in their report that Dell has published hundreds of millions of Windows devices throughout the world, and all these devices contain the vulnerable driver.

After the deep investigation, researchers came to know that the firmware update driver comes up as it accepts IOCTL (Input/Output Control) requests without any ACL requirements.

- Advertisement - Google News

However, the security analysts claimed that it is not good to allow any process to communicate with your driver, the reason is that most probably every driver works with the highest privileges.

The new firmware update has revealed several functions of the flaw, with the help of IRP_MJ_DEVICE_CONTROL. Not only this but it also provides a powerful primitive so that it can easily exploit the bug.

Five Flaws In One

The cybersecurity researchers have detected a set of five high-severity flaws, and it is labeled as CVE-2021-21551. These five flaws have been detected in DBUtil, that’s why after investigating the driver of DBUtil the analysts came to know that it can be exploited “to generate all the privileges from a non-administrator user to kernel mode privileges.”

This vulnerability is not that critical, because in this type of vulnerability the threat actor exploits according to its needs so that they can easily compromise the computer in advance. 

The set of five flaws is being listed below:-

  • CVE-2021-21551: Local Elevation Of Privileges (Memory corruption)
  • CVE-2021-21551: Local Elevation Of Privileges (Memory corruption)
  • CVE-2021-21551: Local Elevation Of Privileges (Lack of input validation)
  • CVE-2021-21551: Local Elevation Of Privileges (Lack of input validation)
  • CVE-2021-21551: Denial of Service (Code logic issue)

Consequence

These critical flaws can easily compromise the computers, whether they had privileges or not, and to gain the privileges the threat actors can easily run code in kernel mode.

Once the attacker exploits the computer, it generally gains access to the organization, after that, they easily execute code on the unpatched Dell systems and later use this vulnerability to obtain the local elevation of privilege.

Mitigation 

After knowing all the key details of this vulnerability, the cybersecurity specialists have provided some mitigation to overcome or bypass such vulnerability.

The very initial mitigations for the users are to apply the patches as soon as possible. However, Dell is still trying to provide all the possible patches in their Dell Security Advisory DSA-2021-088.

Moreover, there is not any kind of indication regarding these vulnerabilities is being exploited in the wild. But, both the specialists and Dell is trying their best to overcome this vulnerability.

You can follow us on LinkedinTwitterFacebook for daily Cybersecurity, and hacking news updates.

Balaji
Balaji
BALAJI is an Ex-Security Researcher (Threat Research Labs) at Comodo Cybersecurity. Editor-in-Chief & Co-Founder - Cyber Security News & GBHackers On Security.

Latest articles

DragonForce and Anubis Ransomware Gangs Launch New Affiliate Programs

Secureworks Counter Threat Unit (CTU) researchers have uncovered innovative strategies deployed by the DragonForce...

“Power Parasites” Phishing Campaign Targets Energy Firms and Major Brands

Silent Push Threat Analysts have uncovered a widespread phishing and scam operation dubbed "Power...

Threat Actors Register Over 26,000 Domains Imitating Brands to Deceive Users

Researchers from Unit 42 have uncovered a massive wave of SMS phishing, or "smishing,"...

Russian Hackers Attempt to Sabotage Digital Control Systems of Dutch Public Service

The Dutch Defense Ministry has revealed that critical infrastructure, democratic processes, and North Sea...

Resilience at Scale

Why Application Security is Non-Negotiable

The resilience of your digital infrastructure directly impacts your ability to scale. And yet, application security remains a critical weak link for most organizations.

Application Security is no longer just a defensive play—it’s the cornerstone of cyber resilience and sustainable growth. In this webinar, Karthik Krishnamoorthy (CTO of Indusface) and Phani Deepak Akella (VP of Marketing – Indusface), will share how AI-powered application security can help organizations build resilience by

Discussion points


Protecting at internet scale using AI and behavioral-based DDoS & bot mitigation.
Autonomously discovering external assets and remediating vulnerabilities within 72 hours, enabling secure, confident scaling.
Ensuring 100% application availability through platforms architected for failure resilience.
Eliminating silos with real-time correlation between attack surface and active threats for rapid, accurate mitigation

More like this

Chrome UAF Process Vulnerabilities Actively Exploited

Security researchers have revealed that two critical use-after-free (UAF) vulnerabilities in Google Chrome’s Browser...

Spring Security Vulnerability Exposes Valid Usernames to Attackers

A newly identified security vulnerability, CVE-2025-22234, has exposed a critical weakness in the widely-used...

SAP NetWeaver 0-Day Vulnerability Enables Webshell Deployment

Cybersecurity analysts have issued a high-priority warning after several incidents revealed active exploitation of...