Dell · Dell Poweredge Server Bios · CVE-2024-0161
**Name of the Vulnerable Software and Affected Versions**
Dell PowerEdge Server BIOS (affected versions not specified)
Dell Precision Rack BIOS (affected versions not specified)
**Description**
The issue is related to a flaw in the verification of the SMM communication buffer, which could allow an attacker to write arbitrary data to the System Management RAM (SMRAM). This could be exploited by a local, low-privileged attacker.
**Recommendations**
For Dell PowerEdge Server BIOS, update to a version that fixes the improper SMM communication buffer verification issue.
For Dell Precision Rack BIOS, update to a version that fixes the improper SMM communication buffer verification issue.
As a temporary workaround, consider restricting access to the SMM communication buffer to minimize the risk of exploitation.