Dell/Alienware Digital Delivery versions prior to 3.5.2013 contain a privilege escalation vulnerability. A local non-privileged malicious user could exploit a named pipe that performs binary deserialization via a process hollowing technique to inject malicous code to run an executable with elevated privileges.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Digital_delivery | Dell | * | 3.5.2013 (excluding) |
Digital_delivery | Dell | 4.0.15.0 (including) | 4.0.41 (excluding) |