Dell Urges Customers to Patch Critical DSU Flaw That Can Give Attackers Root Access
What happened
Dell warns that a critical DSU flaw lets attackers run code as root. Customers should patch affected PowerEdge systems as soon as possible.
Dell urged customers to patch (a fix the maker issues for a flaw in its software) a critical flaw, tracked as CVE-2026-86360 (CVSS score of 9.6), in its System Update (DSU) tool. The vulnerability is a path traversal issue that can let attackers execute code with root privileges on unpatched PowerEdge servers.
DSU is used by enterprise IT teams to deploy BIOS, firmware and software updates on Linux and Windows systems. The vendor recommends applying the available security updates as soon as possible to prevent exploitation.
Sources & evidence
- Security Affairs Reporting source
Dell Urges Customers to Patch Critical DSU Flaw That Can Give Attackers Root Access โ
https://securityaffairs.com/200458/security/dell-urges-customers-to-patch-critical-dsu-flaw-that-can-give-attackers-root-access.html