Dell has released a critical security update for Dell System Update to address multiple vulnerabilities found in versions older than 2.3.0.0. The company is urging all customers to upgrade to version 2.3.0.0 or newer to mitigate these significant risks.
The update fixes CVE-2026-86360, a path traversal flaw allowing remote root code execution, and CVE-2026-63697, an improper certificate validation issue. It also patches local privilege escalation bugs CVE-2026-86361, CVE-2026-86362, and CVE-2026-71168.
These vulnerabilities are critical as they allow unauthenticated attackers to gain filesystem access or execute arbitrary code with root privileges. By securing these entry points, Dell prevents unauthorized local and remote actors from compromising systems.