CVE-2019-3742
09.08.2019, 19:15
Dell/Alienware Digital Delivery versions prior to 3.5.2013 contain a privilege escalation vulnerability. A local non-privileged malicious user could exploit a named pipe that performs binary deserialization via a process hollowing technique to inject malicous code to run an executable with elevated privileges.Enginsight
Vendor | Product | Version |
---|---|---|
dell | digital_delivery | 𝑥 < 3.5.2013 |
dell | digital_delivery | 4.0.15.0 ≤ 𝑥 < 4.0.41 |
𝑥
= Vulnerable software versions