Junglewise Threat Intelligence

CVE-2026-79969: Dell Secure Connect Gateway race condition denial of service

CVE-2026-79969 · Severity: medium · CVSS 5.3 · Published 2026-09-09

Technologies: Dell Secure Connect Gateway Application, Dell Secure Connect Gateway Appliance. Vendors: Dell.

Executive brief

Dell Secure Connect Gateway (SCG) is a network appliance and application that provides secure remote access to corporate networks. Versions prior to 5.36.00.16 (appliance) and 5.36.00.00 (application) contain a race condition vulnerability that allows unauthenticated remote attackers to cause a denial of service by exploiting improper synchronization of shared resources.

Technical details

The vulnerability is a concurrent execution race condition (CWE-366) caused by improper synchronization when multiple processes or threads access shared resources. An unauthenticated attacker with network access can exploit this vulnerability by sending specially crafted requests that trigger the race condition, leading to denial of service. No authentication or user interaction is required. The vulnerability affects Dell SCG Appliance versions prior to 5.36.00.16 and Application versions prior to 5.36.00.00. Patches are available in the mentioned fixed versions.

Affected products

  • Dell Secure Connect Gateway Appliance prior to 5.36.00.16
  • Dell Secure Connect Gateway Application prior to 5.36.00.00

Timeline

  • 2026-09-09: disclosed
  • 2026-09-09: patched: Patches available in versions 5.36.00.16 (appliance) and 5.36.00.00 (application)

References

Related threats