PT-2022-1735 · Dell · Dell Client Consumer+1

Published

2022-02-07

·

Updated

2022-02-16

·

CVE-2022-22566

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Dell Client Commercial and Consumer platforms (affected versions not specified)
Description The issue is related to a pre-boot direct memory access (DMA) vulnerability. An authenticated attacker with physical access to the system may potentially exploit this vulnerability to execute arbitrary code on the device. The vulnerability is also described as a buffer overflow in the BIOS firmware of Dell laptops, which could allow an attacker to execute arbitrary code.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2022-01001
CVE-2022-22566

Affected Products

Dell Client Commercial
Dell Client Consumer