This issue affects all Windows operating systems with a supported revision of the BIOS (starting with version 1.0) and is addressed in the latest Dell BIOS releases. To be protected against this vulnerability, upgrade to the latest BIOS version. A patch has been released by Dell, which can be installed via the Dell update utility or manually downloaded from the Dell website.
Collaborative Software
A vulnerability has been identified within Dell's Collaborative Application. A local authenticated malicious user may potentially exploit this vulnerability by installing a malicious software package.

Dell has released a patch to address this vulnerability. The patch can be downloaded from the Dell website.

Microsoft Windows
A vulnerability has been identified within Microsoft Windows which may allow a local authenticated malicious user to potentially escalate privileges within the operating system.
A local authenticated malicious user may potentially exploit this vulnerability by creating a malicious software package.
Microsoft has released a patch addressing this vulnerability. The patch can be downloaded from the Microsoft website.

A vulnerability has been identified within Microsoft Windows which may allow a local authenticated malicious user to potentially escalate privileges within the operating system.
A local authenticated malicious user may potentially exploit this vulnerability by creating a malicious software package.

References

This release contains the following advisories:

CVE-2022-32485
Collaborative Software
A vulnerability has been identified within Dell's Collaborative Application. A local authenticated malicious user may potentially exploit this vulnerability by installing a malicious software package.
Dell has released a patch to address this vulnerability. The patch can be downloaded from the Dell website.
Microsoft Windows
A vulnerability has been identified within Microsoft Windows which may allow a local authenticated malicious user to potentially escalate privileges within the operating system.
A local authenticated malicious user may potentially exploit this vulnerability by creating a malicious software package.

References ref 1

Dell Update Utility: Dell's update utility is an in-built mechanism that can be used to update the BIOS and other driver packages.
Microsoft Windows: Microsoft Windows is a widely used operating system.
Collaborative Software: Collaborative software is software that allows multiple users to work on a project using files stored on a server or within a network.

References br

Dell, CVE-2022-32485

Timeline

Published on: 10/12/2022 20:15:00 UTC
Last modified on: 10/14/2022 20:11:00 UTC

References