Dell Latitude 5300
cpe:2.3:h:dell:latitude_5300:*:*:*:*:*:*:*, +1 more
- < 5.15.10.14
A stack-based buffer overflow vulnerability has been identified in the securebio_identify function of Dell ControlVault3, versions prior to 5.15.10.14, and Dell ControlVault3 Plus, versions prior to 6.2.26.36. This vulnerability allows for arbitrary code execution, as an attacker can send a specially crafted malicious cv_object through an API call to exploit the issue.
Exploitation of this vulnerability could lead to arbitrary code execution on the affected system.
Users can update to Dell ControlVault3 version 5.15.10.14 or later, or Dell ControlVault3 Plus version 6.2.26.36 or later. For specific update instructions, visit the Dell Drivers & Downloads site.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.