DSA-2020-215: Dell Inspiron 15 7579 2-in-1 Improper SMM Communication Buffer Boundary Verification Vulnerability
Summary: Dell Inspiron 15 7579 2-in-1 has been updated to address an Improper SMM Communication Buffer Boundary Verification Vulnerability.
Impact
Medium
Details
Dell Inspiron 15 7579 2-in-1 BIOS versions prior to 1.31.0 contain an Improper SMM communication buffer verification vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM.
Inspiron 15 7579 2-in-1
The following Dell Inspiron 15 7579 2-in-1 BIOS release contains the resolution to this vulnerability as indicated in the table below.
Customers should use the latest release available from Dell support when updating their systems.
Please visit the Drivers and Downloads site for updates on the applicable products. To learn more, visit the Dell Knowledge Base article Dell BIOS Updates, and download the update for your Dell computer.
Notes:
- Prior to installing the update, please ensure Windows Updates are up to date.
- Update versions in the table below are the first releases with the updates to address the security vulnerabilities. Releases at and above these versions will include the security updates.
Dell Inspiron 15 7579 2-in-1 BIOS versions prior to 1.31.0 contain an Improper SMM communication buffer verification vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM.
Inspiron 15 7579 2-in-1
The following Dell Inspiron 15 7579 2-in-1 BIOS release contains the resolution to this vulnerability as indicated in the table below.
Customers should use the latest release available from Dell support when updating their systems.
Please visit the Drivers and Downloads site for updates on the applicable products. To learn more, visit the Dell Knowledge Base article Dell BIOS Updates, and download the update for your Dell computer.
Notes:
- Prior to installing the update, please ensure Windows Updates are up to date.
- Update versions in the table below are the first releases with the updates to address the security vulnerabilities. Releases at and above these versions will include the security updates.
Affected Products & Remediation
|
Product |
Update BIOS Version |
Release Date (MM/DD/YYYY) |
|---|---|---|
|
Inspiron 15 7579 2-in-1 |
1.31.0 |
9/21/2020 |
Dell recommends all customers upgrade at the earliest opportunity.
|
Product |
Update BIOS Version |
Release Date (MM/DD/YYYY) |
|---|---|---|
|
Inspiron 15 7579 2-in-1 |
1.31.0 |
9/21/2020 |
Dell recommends all customers upgrade at the earliest opportunity.
Workarounds & Mitigations
None.
Revision History
|
Revision |
Date |
Description |
|---|---|---|
|
2.0 |
2020-12-09 |
Changed article type from Solution to DSA |
Acknowledgements
Dell would like to thank Nicholas Armour from Intel for reporting this vulnerability.