Description
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution during SMM.
Published: 2022-05-26
Score: 7.5 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2022-29309 Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution during SMM.
History

No history.

Subscriptions

Dell Dell G5 5505 Dell G5 5505 Firmware Inspiron 22-3275 Inspiron 22-3275 Firmware Inspiron 24-3475 Inspiron 24-3475 Firmware Inspiron 27 7775 Inspiron 27 7775 Firmware Inspiron 3180 Inspiron 3180 Firmware Inspiron 3185 Inspiron 3185 Firmware Inspiron 3195 Inspiron 3195 Firmware Inspiron 3505 Inspiron 3505 Firmware Inspiron 3515 Inspiron 3515 Firmware Inspiron 3585 Inspiron 3585 Firmware Inspiron 3595 Inspiron 3595 Firmware Inspiron 3785 Inspiron 3785 Firmware Inspiron 5405 Inspiron 5405 Firmware Inspiron 5415 Inspiron 5415 Firmware Inspiron 5485 Inspiron 5485 Firmware Inspiron 5505 Inspiron 5505 Firmware Inspiron 5515 Inspiron 5515 Firmware Inspiron 5575 Inspiron 5575 Firmware Inspiron 5585 Inspiron 5585 Firmware Inspiron 5675 Inspiron 5675 Firmware Inspiron 5775 Inspiron 5775 Firmware Inspiron 7375 Inspiron 7375 Firmware Inspiron 7405 Inspiron 7405 Firmware Inspiron 7415 Inspiron 7415 Firmware Vostro 3405 Vostro 3405 Firmware Vostro 3515 Vostro 3515 Firmware Vostro 5415 Vostro 5415 Firmware Vostro 5515 Vostro 5515 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: dell

Published:

Updated: 2024-09-16T20:27:17.052Z

Reserved: 2022-02-04T00:00:00.000Z

Link: CVE-2022-24417

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-05-26T16:15:07.987

Modified: 2024-11-21T06:50:22.880

Link: CVE-2022-24417

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses