Dell Precision Rack, 14G Intel BIOS versions prior to 2.22.2, contains an Access of Memory Location After End of Buffer vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Information disclosure.
History

Mon, 16 Sep 2024 16:15:00 +0000

Type Values Removed Values Added
First Time appeared Dell
Dell 7920 Xl
Dell 7920 Xl Firmware
Dell precision 7920
Dell precision 7920 Firmware
Weaknesses CWE-119
CPEs cpe:2.3:h:dell:7920_xl:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:precision_7920:-:*:*:*:*:*:*:*
cpe:2.3:o:dell:7920_xl_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:dell:precision_7920_firmware:*:*:*:*:*:*:*:*
Vendors & Products Dell
Dell 7920 Xl
Dell 7920 Xl Firmware
Dell precision 7920
Dell precision 7920 Firmware

Tue, 10 Sep 2024 15:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 10 Sep 2024 08:30:00 +0000

Type Values Removed Values Added
Description Dell Precision Rack, 14G Intel BIOS versions prior to 2.22.2, contains an Access of Memory Location After End of Buffer vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Information disclosure.
Weaknesses CWE-788
References
Metrics cvssV3_1

{'score': 3.8, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: dell

Published: 2024-09-10T08:17:04.690Z

Updated: 2024-09-10T15:08:54.037Z

Reserved: 2024-08-01T07:28:53.702Z

Link: CVE-2024-42425

cve-icon Vulnrichment

Updated: 2024-09-10T15:08:48.851Z

cve-icon NVD

Status : Analyzed

Published: 2024-09-10T09:15:03.777

Modified: 2024-09-16T15:46:03.110

Link: CVE-2024-42425

cve-icon Redhat

No data.