PT-2023-13384 · Dell · Dell Poweredge Bios+1

Published

2023-03-16

·

Updated

2023-03-22

·

CVE-2022-34406

CVSS v3.1

7.5

High

VectorAV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Dell PowerEdge BIOS (affected versions not specified) Dell Precision BIOS (affected versions not specified)
Description The issue is related to an Improper SMM communication buffer verification vulnerability. A local malicious user with high privileges may potentially exploit this to perform arbitrary code execution or cause denial of service.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Buffer Overflow

Weakness Enumeration

Related Identifiers

CVE-2022-34406

Affected Products

Dell Poweredge Bios
Dell Precision Bios