Settings for the Dell XPS 13 2-in-1 (7390) BIOS versions prior to 1.1.3 contain a configuration vulnerability. The BIOS configuration for the "Enable Thunderbolt (and PCIe behind TBT) pre-boot modules" setting is enabled by default. A local unauthenticated attacker with physical access to a user's system can obtain read or write access to main memory via a DMA attack during platform boot.
Advisories
Source ID Title
EUVD EUVD EUVD-2019-8326 Settings for the Dell XPS 13 2-in-1 (7390) BIOS versions prior to 1.1.3 contain a configuration vulnerability. The BIOS configuration for the "Enable Thunderbolt (and PCIe behind TBT) pre-boot modules" setting is enabled by default. A local unauthenticated attacker with physical access to a user's system can obtain read or write access to main memory via a DMA attack during platform boot.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: dell

Published:

Updated: 2024-09-16T22:31:09.094Z

Reserved: 2019-10-29T00:00:00

Link: CVE-2019-18579

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-12-16T20:15:15.930

Modified: 2024-11-21T04:33:20.110

Link: CVE-2019-18579

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses