6.7

CVE-2023-32461

Dell PowerEdge BIOS and Dell Precision BIOS contain a buffer overflow vulnerability.  A local malicious user with high privileges could potentially exploit this vulnerability, leading to corrupt memory and potentially escalate privileges.  

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
DellPoweredge R660 Firmware Version < 1.5.6
   DellPoweredge R660 Version-
DellPoweredge R760 Firmware Version < 1.5.6
   DellPoweredge R760 Version-
DellPoweredge C6620 Firmware Version < 1.5.6
   DellPoweredge C6620 Version-
DellPoweredge Mx760c Firmware Version < 1.5.6
   DellPoweredge Mx760c Version-
DellPoweredge R860 Firmware Version < 1.5.6
   DellPoweredge R860 Version-
DellPoweredge R960 Firmware Version < 1.5.6
   DellPoweredge R960 Version-
DellPoweredge Hs5610 Firmware Version < 1.5.6
   DellPoweredge Hs5610 Version-
DellPoweredge Hs5620 Firmware Version < 1.5.6
   DellPoweredge Hs5620 Version-
DellPoweredge R660xs Firmware Version < 1.5.6
   DellPoweredge R660xs Version-
DellPoweredge R760xs Firmware Version < 1.5.6
   DellPoweredge R760xs Version-
DellPoweredge R760xd2 Firmware Version < 1.5.6
   DellPoweredge R760xd2 Version-
DellPoweredge T560 Firmware Version < 1.5.6
   DellPoweredge T560 Version-
DellPoweredge R760xa Firmware Version < 1.1.3
   DellPoweredge R760xa Version-
DellPoweredge Xe9680 Firmware Version < 1.1.3
   DellPoweredge Xe9680 Version-
DellPoweredge Xr5610 Firmware Version < 1.1.4
   DellPoweredge Xr5610 Version-
DellPoweredge Xr8620t Firmware Version < 1.1.3
   DellPoweredge Xr8620t Version-
DellPoweredge Xr7620 Firmware Version < 1.5.6
   DellPoweredge Xr7620 Version-
DellPoweredge Xe8640 Firmware Version < 1.2.5
   DellPoweredge Xe8640 Version-
DellPoweredge R6615 Firmware Version < 1.3.11
   DellPoweredge R6615 Version-
DellPoweredge R7615 Firmware Version < 1.3.11
   DellPoweredge R7615 Version-
DellPoweredge R6625 Firmware Version < 1.3.11
   DellPoweredge R6625 Version-
DellPoweredge R7625 Firmware Version < 1.3.11
   DellPoweredge R7625 Version-
DellPoweredge R650 Firmware Version < 1.10.2
   DellPoweredge R650 Version-
DellPoweredge R750 Firmware Version < 1.10.2
   DellPoweredge R750 Version-
DellPoweredge R750xa Firmware Version < 1.10.2
   DellPoweredge R750xa Version-
DellPoweredge C6520 Firmware Version < 1.10.2
   DellPoweredge C6520 Version-
DellPoweredge Mx750c Firmware Version < 1.10.2
   DellPoweredge Mx750c Version-
DellPoweredge R550 Firmware Version < 1.10.2
   DellPoweredge R550 Version-
DellPoweredge R450 Firmware Version < 1.10.2
   DellPoweredge R450 Version-
DellPoweredge R650xs Firmware Version < 1.10.2
   DellPoweredge R650xs Version-
DellPoweredge R750xs Firmware Version < 1.10.2
   DellPoweredge R750xs Version-
DellPoweredge T550 Firmware Version < 1.10.2
   DellPoweredge T550 Version-
DellPoweredge Xr11 Firmware Version < 1.10.2
   DellPoweredge Xr11 Version-
DellPoweredge Xr12 Firmware Version < 1.10.2
   DellPoweredge Xr12 Version-
DellPoweredge T150 Firmware Version < 1.6.3
   DellPoweredge T150 Version-
DellPoweredge T350 Firmware Version < 1.6.3
   DellPoweredge T350 Version-
DellPoweredge R250 Firmware Version < 1.6.3
   DellPoweredge R250 Version-
DellPoweredge R350 Firmware Version < 1.6.3
   DellPoweredge R350 Version-
DellPoweredge Xr4510c Firmware Version < 1.10.4
   DellPoweredge Xr4510c Version-
DellPoweredge Xr4520c Firmware Version < 1.10.4
   DellPoweredge Xr4520c Version-
DellPoweredge Xr4520c Firmware Version1.10.4
   DellPoweredge Xr4520c Version-
DellPoweredge R6515 Firmware Version < 2.11.4
   DellPoweredge R6515 Version-
DellPoweredge R6525 Firmware Version < 2.11.3
   DellPoweredge R6525 Version-
DellPoweredge R7515 Firmware Version < 2.11.4
   DellPoweredge R7515 Version-
DellPoweredge R7525 Firmware Version < 2.11.3
   DellPoweredge R7525 Version-
DellPoweredge C6525 Firmware Version < 2.11.3
   DellPoweredge C6525 Version-
DellPoweredge Xe8545 Firmware Version < 2.11.3
   DellPoweredge Xe8545 Version-
DellEmc Xc Core Xc450 Firmware Version < 1.11.2
   DellEmc Xc Core Xc450 Version-
DellEmc Xc Core Xc650 Firmware Version < 1.11.2
   DellEmc Xc Core Xc650 Version-
DellEmc Xc Core Xc750 Firmware Version < 1.11.2
   DellEmc Xc Core Xc750 Version-
DellEmc Xc Core Xc750xa Firmware Version < 1.11.2
   DellEmc Xc Core Xc750xa Version-
DellEmc Xc Core Xc6520 Firmware Version < 1.11.2
   DellEmc Xc Core Xc6520 Version-
DellEmc Xc Core Xc7525 Firmware Version < 2.11.3
   DellEmc Xc Core Xc7525 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.07% 0.206
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 6.7 0.8 5.9
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
security_alert@emc.com 5 0.8 3.7
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:L/I:L/A:L
CWE-122 Heap-based Buffer Overflow

A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().