NPCC Security Bulletin: Dell Client Platform Security Update


The NPCC Security Bulletin is on Security Bulletin Dell Client Platform Security Update.
NPCC is publishing this security bulletin to engage and inform NPCC entities on aspects of Bulk Power System security and reliability
TPL: WHITE
Dell Client Platform Security Update
Dell released an update utility to mitigate a security vulnerability affecting the dbutil_2_3.sys driver packaged with Dell Client firmware update utility packages and tools. The Dell dbutil_2_3.sys driver located in the Dell platform BIOS contains an insufficient access control vulnerability which may lead to escalation of privileges, denial of service, or information disclosure. Local authenticated user access is required to exploit this vulnerability. If you utilize an affected Dell Platform, please review the link at the end of this bulletin. The linked article covers:
- Affected Products and Remediation
- Remediation Steps
- List of Supported Dell Platform: Table A
- List of End of Service Life Dell platforms: Table B
Dell Article Name: Article Number: 000186019
Link: Dell Article Link
NPCC is dedicated to the continued reliability of the bulk power system in Northeastern North America
