Dell quietly patched a security vulnerability that affected millions of users

Computing giant Dell released a security advisory Thursday encouraging customers to patch a software vulnerability the company says could have enabled hackers to access sensitive information on “several million” machines running Microsoft Windows. The unnamed issue in Dell’s SupportAssist application could have allowed outsiders to take over a machine and read the stored physical memory, according to SafeBreach Labs, a California network security company. Dell released its security patch to fix this issue on May 28, and a spokesperson says more than 90 percent of customers have recieved the update. Dell waited three weeks to go public with the advisory to allow time for PC Doctor, the third-party supplier behind the component responsible for the vulnerability, to release its own advisory. SafeBreach did not provide any evidence hackers exploited the vulnerability, but such a flaw would be a tempting target for hackers. The tool comes preinstalled on Dell computers and helps customers check the health of both hardware and software. Those tasks require a high level of permission, and abusing such […]

The post Dell quietly patched a security vulnerability that affected millions of users appeared first on CyberScoop.

Continue reading Dell quietly patched a security vulnerability that affected millions of users