CVE-2019-3742: Dell Digital Delivery

High severity, CVSS 7.8. EPSS: 0.4% chance of exploitation in the next 30 days.

Dell/Alienware Digital Delivery versions prior to 3.5.2013 contain a privilege escalation vulnerability. A local non-privileged malicious user could exploit a named pipe that performs binary deserialization via a process hollowing technique to inject malicous code to run an executable with elevated privileges.

Affected products

  • Dell Digital Delivery: before 3.5.2013 (fixed in 3.5.2013); from 4.0.15.0, before 4.0.41 (fixed in 4.0.41)

Published 2019-08-09. Last modified 2026-06-17.