Executive brief
Dell Client Platform BIOS contains a flaw that allows a low-privileged local attacker to write arbitrary data to the system, potentially compromising firmware integrity and system security. Exploitation requires local access and user interaction, but could lead to permanent system compromise or data corruption if successful.
Technical details
Dell Client BIOS contains an Improper Link Resolution Before File Access (link following / symlink attack) vulnerability that allows arbitrary write operations. A low-privileged local attacker can exploit this flaw by crafting symbolic links to redirect file access to protected system files. The attack requires local access and user interaction (UI:R), but does not require administrative privileges (PR:L). Successful exploitation results in high integrity and availability impact, potentially allowing modification of critical system files or BIOS settings. Patches are available through Dell's Drivers & Downloads portal for affected models including Alienware and Inspiron/XPS systems.
Affected products
- Dell Alienware Area 51m R2 BIOS prior to 1.37.0
- Dell Alienware Area-51 AAT2265 BIOS prior to 1.8.1
- Dell Alienware Aurora R13 BIOS prior to 1.33.0
- Dell Alienware Aurora R15 BIOS prior to 1.29.0
- Dell Alienware Aurora R15 AMD BIOS prior to 1.26.0
- Dell Alienware Aurora Ryzen Edition R14 BIOS prior to 2.32.0
- Dell Alienware m15 R3 BIOS prior to 1.37.0
- Dell Alienware m15 R4 BIOS prior to 1.35.0
- Dell Alienware m17 R3 BIOS prior to 1.37.0
- Dell Alienware m17 R4 BIOS prior to 1.35.0
- Dell Alienware x15 R1 BIOS prior to 1.34.0
- Dell Alienware x17 R1 BIOS prior to 1.34.0
- Dell Aurora R16 BIOS prior to 2.25.0
- Dell Inspiron 15 3510 BIOS prior to 1.30.0
- Dell Inspiron 15 3521 BIOS prior to 1.25.0
- Dell XPS 8950 BIOS prior to 1.33.0
- Dell XPS 8960 BIOS prior to 2.24.0
Timeline
- 2026-08-24: disclosed
- 2026-08-14: patched: Patches released for multiple Alienware and XPS models