CVE-2022-34460

Prior Dell BIOS versions contain an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM.

References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:dell:g5_se_5505_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:g5_se_5505:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:dell:inspiron_27_7775_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:inspiron_27_7775:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:dell:inspiron_3180_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:inspiron_3180:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:dell:inspiron_3185_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:inspiron_3185:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:dell:inspiron_3195_2-in-1_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:inspiron_3195_2-in-1:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:dell:inspiron_3275_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:inspiron_3275:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:dell:inspiron_3475_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:inspiron_3475:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:o:dell:inspiron_3505_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:inspiron_3505:-:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
cpe:2.3:o:dell:inspiron_3515_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:inspiron_3515:-:*:*:*:*:*:*:*

Configuration 10 (hide)

AND
cpe:2.3:o:dell:inspiron_3585_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:inspiron_3585:-:*:*:*:*:*:*:*

Configuration 11 (hide)

AND
cpe:2.3:o:dell:inspiron_3595_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:inspiron_3595:-:*:*:*:*:*:*:*

Configuration 12 (hide)

AND
cpe:2.3:o:dell:inspiron_3785_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:inspiron_3785:-:*:*:*:*:*:*:*

Configuration 13 (hide)

AND
cpe:2.3:o:dell:inspiron_5405_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:inspiron_5405:-:*:*:*:*:*:*:*

Configuration 14 (hide)

AND
cpe:2.3:o:dell:inspiron_5415_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:inspiron_5415:-:*:*:*:*:*:*:*

Configuration 15 (hide)

AND
cpe:2.3:o:dell:inspiron_5485_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:inspiron_5485:-:*:*:*:*:*:*:*

Configuration 16 (hide)

AND
cpe:2.3:o:dell:inspiron_5485_2-in-1_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:inspiron_5485_2-in-1:-:*:*:*:*:*:*:*

Configuration 17 (hide)

AND
cpe:2.3:o:dell:inspiron_5505_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:inspiron_5505:-:*:*:*:*:*:*:*

Configuration 18 (hide)

AND
cpe:2.3:o:dell:inspiron_5515_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:inspiron_5515:-:*:*:*:*:*:*:*

Configuration 19 (hide)

AND
cpe:2.3:o:dell:inspiron_5585_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:inspiron_5585:-:*:*:*:*:*:*:*

Configuration 20 (hide)

AND
cpe:2.3:o:dell:inspiron_7375_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:inspiron_7375:-:*:*:*:*:*:*:*

Configuration 21 (hide)

AND
cpe:2.3:o:dell:inspiron_7405_2-in-1_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:inspiron_7405_2-in-1:-:*:*:*:*:*:*:*

Configuration 22 (hide)

AND
cpe:2.3:o:dell:inspiron_7415_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:inspiron_7415:-:*:*:*:*:*:*:*

Configuration 23 (hide)

AND
cpe:2.3:o:dell:vostro_3405_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:vostro_3405:-:*:*:*:*:*:*:*

Configuration 24 (hide)

AND
cpe:2.3:o:dell:vostro_3515_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:vostro_3515:-:*:*:*:*:*:*:*

Configuration 25 (hide)

AND
cpe:2.3:o:dell:vostro_5415_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:vostro_5415:-:*:*:*:*:*:*:*

Configuration 26 (hide)

AND
cpe:2.3:o:dell:vostro_5515_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:vostro_5515:-:*:*:*:*:*:*:*

History

21 Nov 2024, 07:09

Type Values Removed Values Added
References () https://www.dell.com/support/kbdoc/000204686 - Vendor Advisory () https://www.dell.com/support/kbdoc/000204686 - Vendor Advisory
CVSS v2 : unknown
v3 : 7.8
v2 : unknown
v3 : 7.5