Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM.
Metrics
No CVSS v4.0
Attack Vector Local
Attack Complexity High
Privileges Required High
Scope Changed
Confidentiality Impact High
Integrity Impact High
Availability Impact High
User Interaction None
No CVSS v3.0
No CVSS v2
This CVE is not in the KEV list.
The EPSS score is 0.0003.
Exploitation none
Automatable no
Technical Impact total
Affected Vendors & Products
| Vendors | Products |
|---|---|
|
Dell
Subscribe
|
G5 Se 5505
Subscribe
G5 Se 5505 Firmware
Subscribe
Inspiron 27 7775
Subscribe
Inspiron 27 7775 Firmware
Subscribe
Inspiron 3180
Subscribe
Inspiron 3180 Firmware
Subscribe
Inspiron 3185
Subscribe
Inspiron 3185 Firmware
Subscribe
Inspiron 3195 2-in-1
Subscribe
Inspiron 3195 2-in-1 Firmware
Subscribe
Inspiron 3275
Subscribe
Inspiron 3275 Firmware
Subscribe
Inspiron 3475
Subscribe
Inspiron 3475 Firmware
Subscribe
Inspiron 3505
Subscribe
Inspiron 3505 Firmware
Subscribe
Inspiron 3515
Subscribe
Inspiron 3515 Firmware
Subscribe
Inspiron 3585
Subscribe
Inspiron 3585 Firmware
Subscribe
Inspiron 3595
Subscribe
Inspiron 3595 Firmware
Subscribe
Inspiron 3785
Subscribe
Inspiron 3785 Firmware
Subscribe
Inspiron 5405
Subscribe
Inspiron 5405 Firmware
Subscribe
Inspiron 5415
Subscribe
Inspiron 5415 Firmware
Subscribe
Inspiron 5485
Subscribe
Inspiron 5485 2-in-1
Subscribe
Inspiron 5485 2-in-1 Firmware
Subscribe
Inspiron 5485 Firmware
Subscribe
Inspiron 5505
Subscribe
Inspiron 5505 Firmware
Subscribe
Inspiron 5515
Subscribe
Inspiron 5515 Firmware
Subscribe
Inspiron 5585
Subscribe
Inspiron 5585 Firmware
Subscribe
Inspiron 7375
Subscribe
Inspiron 7375 Firmware
Subscribe
Inspiron 7405 2-in-1
Subscribe
Inspiron 7405 2-in-1 Firmware
Subscribe
Inspiron 7415
Subscribe
Inspiron 7415 Firmware
Subscribe
Vostro 3405
Subscribe
Vostro 3405 Firmware
Subscribe
Vostro 3515
Subscribe
Vostro 3515 Firmware
Subscribe
Vostro 5415
Subscribe
Vostro 5415 Firmware
Subscribe
Vostro 5515
Subscribe
Vostro 5515 Firmware
Subscribe
|
Configuration 1 [-]
| AND |
|
Configuration 2 [-]
| AND |
|
Configuration 3 [-]
| AND |
|
Configuration 4 [-]
| AND |
|
Configuration 5 [-]
| AND |
|
Configuration 6 [-]
| AND |
|
Configuration 7 [-]
| AND |
|
Configuration 8 [-]
| AND |
|
Configuration 9 [-]
| AND |
|
Configuration 10 [-]
| AND |
|
Configuration 11 [-]
| AND |
|
Configuration 12 [-]
| AND |
|
Configuration 13 [-]
| AND |
|
Configuration 14 [-]
| AND |
|
Configuration 15 [-]
| AND |
|
Configuration 16 [-]
| AND |
|
Configuration 17 [-]
| AND |
|
Configuration 18 [-]
| AND |
|
Configuration 19 [-]
| AND |
|
Configuration 20 [-]
| AND |
|
Configuration 21 [-]
| AND |
|
Configuration 22 [-]
| AND |
|
Configuration 23 [-]
| AND |
|
Configuration 24 [-]
| AND |
|
Configuration 25 [-]
| AND |
|
Configuration 26 [-]
| AND |
|
No data.
No data.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-37348 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
| Link | Providers |
|---|---|
| https://www.dell.com/support/kbdoc/000204686 |
|
Thu, 03 Apr 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: dell
Published:
Updated: 2025-04-03T19:38:19.876Z
Reserved: 2022-06-23T18:55:17.093Z
Link: CVE-2022-34393
Updated: 2024-08-03T09:07:16.287Z
Status : Modified
Published: 2023-01-18T06:15:11.413
Modified: 2024-11-21T07:09:25.563
Link: CVE-2022-34393
No data.
OpenCVE Enrichment
No data.
EUVD