Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM.





Project Subscriptions

Vendors Products
G5 Se 5505 Subscribe
G5 Se 5505 Firmware Subscribe
Inspiron 27 7775 Subscribe
Inspiron 27 7775 Firmware Subscribe
Inspiron 3180 Subscribe
Inspiron 3180 Firmware Subscribe
Inspiron 3185 Subscribe
Inspiron 3185 Firmware Subscribe
Inspiron 3195 2-in-1 Subscribe
Inspiron 3195 2-in-1 Firmware Subscribe
Inspiron 3275 Subscribe
Inspiron 3275 Firmware Subscribe
Inspiron 3475 Subscribe
Inspiron 3475 Firmware Subscribe
Inspiron 3505 Subscribe
Inspiron 3505 Firmware Subscribe
Inspiron 3515 Subscribe
Inspiron 3515 Firmware Subscribe
Inspiron 3585 Subscribe
Inspiron 3585 Firmware Subscribe
Inspiron 3595 Subscribe
Inspiron 3595 Firmware Subscribe
Inspiron 3785 Subscribe
Inspiron 3785 Firmware Subscribe
Inspiron 5405 Subscribe
Inspiron 5405 Firmware Subscribe
Inspiron 5415 Subscribe
Inspiron 5415 Firmware Subscribe
Inspiron 5485 Subscribe
Inspiron 5485 2-in-1 Subscribe
Inspiron 5485 2-in-1 Firmware Subscribe
Inspiron 5485 Firmware Subscribe
Inspiron 5505 Subscribe
Inspiron 5505 Firmware Subscribe
Inspiron 5515 Subscribe
Inspiron 5515 Firmware Subscribe
Inspiron 5585 Subscribe
Inspiron 5585 Firmware Subscribe
Inspiron 7375 Subscribe
Inspiron 7375 Firmware Subscribe
Inspiron 7405 2-in-1 Subscribe
Inspiron 7405 2-in-1 Firmware Subscribe
Inspiron 7415 Subscribe
Inspiron 7415 Firmware Subscribe
Vostro 3405 Subscribe
Vostro 3405 Firmware Subscribe
Vostro 3515 Subscribe
Vostro 3515 Firmware Subscribe
Vostro 5415 Subscribe
Vostro 5415 Firmware Subscribe
Vostro 5515 Subscribe
Vostro 5515 Firmware Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2022-37348 Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Thu, 03 Apr 2025 20:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: dell

Published:

Updated: 2025-04-03T19:38:19.876Z

Reserved: 2022-06-23T18:55:17.093Z

Link: CVE-2022-34393

cve-icon Vulnrichment

Updated: 2024-08-03T09:07:16.287Z

cve-icon NVD

Status : Modified

Published: 2023-01-18T06:15:11.413

Modified: 2024-11-21T07:09:25.563

Link: CVE-2022-34393

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses