PT-2022-6198 · Dell · Dell Alienware M17 R5 Bios

Ling_Sec

·

Published

2022-06-23

·

Updated

2023-01-26

·

CVE-2022-34399

CVSS v2.0

5.6

Medium

VectorAV:L/AC:L/Au:N/C:P/I:C/A:N
Name of the Vulnerable Software and Affected Versions Dell Alienware m17 R5 BIOS versions prior to 1.2.2
Description The issue is related to a buffer access vulnerability in the BIOS software of Dell Alienware m17 R5 laptops. A malicious user with admin privileges could potentially exploit this vulnerability by sending input larger than expected, which may lead to leaking certain sections of SMRAM. This could impact the confidentiality and integrity of protected information.
Recommendations For Dell Alienware m17 R5 BIOS versions prior to 1.2.2, update the BIOS to version 1.2.2 or later to resolve the issue. As a temporary workaround, consider restricting admin privileges to minimize the risk of exploitation.

Fix

Buffer Overflow

Weakness Enumeration

Related Identifiers

BDU:2023-00466
CVE-2022-34399

Affected Products

Dell Alienware M17 R5 Bios