CNNVD-202508-614 Information

CNNVD ID

CNNVD-202508-614

CVE-2025-38747

  • CNNVD Published: 2025-08-06

Description (Chinese)

Dell SupportAssist OS Recovery是美国戴尔(Dell)公司的提供了一个恢复环境,其中包含用于诊断和解决在计算机启动到操作系统之前可能发生的问题的工具。 Dell SupportAssist OS Recovery 5.5.14.0之前版本存在安全漏洞,该漏洞源于临时文件权限不当,可能导致权限提升。

Description (English)

Dell SupportAsist OS Recovery, a United States company, provides a recovery environment that includes tools for the diagnosis and resolution of problems that may occur before the computer is launched to the operating system. There was a security loophole in the pre-Dell SupportAsist OS Study 5.5.14.0 version, which stemmed from inappropriate temporary document privileges, which could lead to increased privileges.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

戴尔

Published

2025-08-06

Last Modified

2026-02-24

References

https://www.dell.com/support/kbdoc/en-us/000353093/dsa-2025-315 https://nvd.nist.gov/vuln/detail/CVE-2025-38747

Patch

https://www.dell.com/support/kbdoc/en-us/000353093/dsa-2025-315

Share on: