8.8
CVE-2022-34403
- EPSS 0.04%
- Published 01.02.2023 06:15:08
- Last modified 21.11.2024 07:09:27
- Source security_alert@emc.com
- Teams watchlist Login
- Open Login
Dell BIOS contains a Stack based buffer overflow vulnerability. A local authenticated attacker could potentially exploit this vulnerability by using an SMI to send larger than expected input to a parameter to gain arbitrary code execution in SMRAM.
Data is provided by the National Vulnerability Database (NVD)
Dell ≫ Alienware M15 R6 Firmware Version < 1.17.0
Dell ≫ Alienware M15 R7 Firmware Version < 1.4.3
Dell ≫ Alienware M15 Ryzen Edition R5 Firmware Version < 1.8.0
Dell ≫ Alienware M17 R5 Amd Firmware Version < 1.4.3
Dell ≫ G15 5510 Firmware Version < 1.16.0
Dell ≫ G15 5511 Firmware Version < 1.18.0
Dell ≫ G15 5515 Firmware Version < 1.8.0
Dell ≫ G15 5525 Firmware Version < 1.4.3
Dell ≫ G5 Se 5505 Firmware Version < 1.13.0
Dell ≫ Inspiron 14 5410 2-in-1 Firmware Version < 2.15.2
Dell ≫ Inspiron 15 3511 Firmware Version < 1.18.2
Dell ≫ Inspiron 3195 2-in-1 Firmware Version < 1.6.0
Dell ≫ Inspiron 3275 Firmware Version < 1.9.2
Dell ≫ Inspiron 3475 Firmware Version < 1.9.2
Dell ≫ Inspiron 3505 Firmware Version < 1.9.0
Dell ≫ Inspiron 3515 Firmware Version < 1.9.0
Dell ≫ Inspiron 3525 Firmware Version < 1.5.0
Dell ≫ Inspiron 3585 Firmware Version < 1.10.0
Dell ≫ Inspiron 3595 Firmware Version < 1.5.0
Dell ≫ Inspiron 3785 Firmware Version < 1.10.0
Dell ≫ Inspiron 3891 Firmware Version < 1.12.0
Dell ≫ Inspiron 5310 Firmware Version < 2.15.0
Dell ≫ Inspiron 5405 Firmware Version < 1.9.0
Dell ≫ Inspiron 5410 Firmware Version < 2.14.0
Dell ≫ Inspiron 5415 Firmware Version < 1.13.0
Dell ≫ Inspiron 5425 Firmware Version < 1.5.0
Dell ≫ Inspiron 5485 Firmware Version < 2.11.0
Dell ≫ Inspiron 5485 2-in-1 Firmware Version < 2.11.0
Dell ≫ Inspiron 5505 Firmware Version < 1.9.0
Dell ≫ Inspiron 5510 Firmware Version < 2.15.2
Dell ≫ Inspiron 5515 Firmware Version < 1.13.0
Dell ≫ Inspiron 5585 Firmware Version < 2.11.0
Dell ≫ Inspiron 7405 2-in-1 Firmware Version < 1.10.1
Dell ≫ Inspiron 7415 Firmware Version < 1.13.0
Dell ≫ Inspiron 7425 Firmware Version < 1.5.0
Dell ≫ Inspiron 7510 Firmware Version < 1.12.0
Dell ≫ Inspiron 7610 Firmware Version < 1.12.0
Dell ≫ Latitude 3320 Firmware Version < 1.18.2
Dell ≫ Latitude 3420 Firmware Version < 1.23.2
Dell ≫ Latitude 3520 Firmware Version < 1.23.2
Dell ≫ Latitude 5320 Firmware Version < 1.24.3
Dell ≫ Latitude 5420 Firmware Version < 1.22.0
Dell ≫ Latitude 5520 Firmware Version < 1.24.3
Dell ≫ Latitude 5521 Firmware Version < 1.17.3
Dell ≫ Latitude 7320 Firmware Version < 1.20.0
Dell ≫ Latitude 7320 Detachable Firmware Version < 1.17.2
Dell ≫ Latitude 7420 Firmware Version < 1.20.0
Dell ≫ Latitude 7520 Firmware Version < 1.20.0
Dell ≫ Latitude 9420 Firmware Version < 1.16.2
Dell ≫ Latitude 9520 Firmware Version < 1.17.0
Dell ≫ Latitude Rugged 5430 Firmware Version < 1.12.0
Dell ≫ Latitude Rugged 7330 Firmware Version < 1.12.0
Dell ≫ Latitude 5421 Firmware Version < 1.15.0
Dell ≫ Optiplex 5090 Firmware Version < 1.12.0
Dell ≫ Optiplex 5490 All-in-one Firmware Version < 1.15.0
Dell ≫ Optiplex 7090 Tower Firmware Version < 1.12.0
Dell ≫ Optiplex 7090 Ultra Firmware Version < 1.15.0
Dell ≫ Optiplex 7090 Aio Firmware Version < 1.15.0
Dell ≫ Precision 3450 Firmware Version < 1.12.0
Dell ≫ Precision 3560 Firmware Version < 1.24.3
Dell ≫ Precision 3561 Firmware Version < 1.17.3
Dell ≫ Precision 3650 Tower Firmware Version < 1.16.0
Dell ≫ Precision 5560 Firmware Version < 1.15.2
Dell ≫ Precision 5760 Firmware Version < 1.15.2
Dell ≫ Precision 7560 Firmware Version < 1.16.0
Dell ≫ Precision 7760 Firmware Version < 1.16.0
Dell ≫ Vostro 3405 Firmware Version < 1.9.0
Dell ≫ Vostro 3425 Firmware Version < 1.5.0
Dell ≫ Vostro 3510 Firmware Version < 1.18.2
Dell ≫ Vostro 3515 Firmware Version < 1.9.0
Dell ≫ Vostro 3525 Firmware Version < 1.5.0
Dell ≫ Vostro 3690 Firmware Version < 1.12.0
Dell ≫ Vostro 3890 Firmware Version < 1.12.0
Dell ≫ Vostro 5310 Firmware Version < 2.15.0
Dell ≫ Vostro 5410 Firmware Version < 2.15.2
Dell ≫ Vostro 5415 Firmware Version < 1.13.0
Dell ≫ Vostro 5510 Firmware Version < 2.15.2
Dell ≫ Vostro 5515 Firmware Version < 1.13.0
Dell ≫ Vostro 5625 Firmware Version < 1.5.0
Dell ≫ Vostro 5890 Firmware Version < 1.12.0
Dell ≫ Vostro 7510 Firmware Version < 1.12.0
Dell ≫ Xps 15 9510 Firmware Version < 1.15.2
Dell ≫ Xps 17 9710 Firmware Version < 1.15.2
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.04% | 0.104 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 8.8 | 2 | 6 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
|
security_alert@emc.com | 7.5 | 0.8 | 6 |
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H
|
CWE-121 Stack-based Buffer Overflow
A stack-based buffer overflow condition is a condition where the buffer being overwritten is allocated on the stack (i.e., is a local variable or, rarely, a parameter to a function).
CWE-787 Out-of-bounds Write
The product writes data past the end, or before the beginning, of the intended buffer.