Dell PowerEdge Server BIOS contains an TOCTOU race condition vulnerability. A local low privileged attacker could potentially exploit this vulnerability to gain access to otherwise unauthorized resources.
Advisories
Source ID Title
EUVD EUVD EUVD-2024-15970 Dell PowerEdge Server BIOS contains an TOCTOU race condition vulnerability. A local low privileged attacker could potentially exploit this vulnerability to gain access to otherwise unauthorized resources.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Tue, 20 Aug 2024 13:45:00 +0000

Type Values Removed Values Added
First Time appeared Dell
Dell poweredge C6615
Dell poweredge C6615 Firmware
Dell poweredge R6615
Dell poweredge R6615 Firmware
Dell poweredge R6625
Dell poweredge R6625 Firmware
Dell poweredge R7615
Dell poweredge R7615 Firmware
Dell poweredge R7625
Dell poweredge R7625 Firmware
Dell xc Core Xc7625
Dell xc Core Xc7625 Firmware
CPEs cpe:2.3:h:dell:poweredge_c6615:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:poweredge_r6615:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:poweredge_r6625:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:poweredge_r7615:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:poweredge_r7625:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:xc_core_xc7625:-:*:*:*:*:*:*:*
cpe:2.3:o:dell:poweredge_c6615_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:dell:poweredge_r6615_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:dell:poweredge_r6625_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:dell:poweredge_r7615_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:dell:poweredge_r7625_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:dell:xc_core_xc7625_firmware:*:*:*:*:*:*:*:*
Vendors & Products Dell
Dell poweredge C6615
Dell poweredge C6615 Firmware
Dell poweredge R6615
Dell poweredge R6615 Firmware
Dell poweredge R6625
Dell poweredge R6625 Firmware
Dell poweredge R7615
Dell poweredge R7615 Firmware
Dell poweredge R7625
Dell poweredge R7625 Firmware
Dell xc Core Xc7625
Dell xc Core Xc7625 Firmware

cve-icon MITRE

Status: PUBLISHED

Assigner: dell

Published:

Updated: 2024-08-01T17:41:15.984Z

Reserved: 2023-12-14T05:35:34.949Z

Link: CVE-2024-0171

cve-icon Vulnrichment

Updated: 2024-08-01T17:41:15.984Z

cve-icon NVD

Status : Modified

Published: 2024-06-25T16:15:24.197

Modified: 2024-11-21T08:45:59.980

Link: CVE-2024-0171

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.