High
Proprietary Code CVE(s) | Description | CVSS Base Score | CVSS Vector String |
CVE-2022-34393 | Prior Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM. | 7.5 |
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H |
CVE-2022-34460 | Prior Dell BIOS versions contain an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM. | 7.5 | CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H |
Proprietary Code CVE(s) | Description | CVSS Base Score | CVSS Vector String |
CVE-2022-34393 | Prior Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM. | 7.5 |
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H |
CVE-2022-34460 | Prior Dell BIOS versions contain an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM. | 7.5 | CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H |
Product | BIOS Update Version | BIOS Release Date (MM/DD/YYYY) |
Dell G5 SE 5505 | 1.12.1 | 9/27/2022 |
Inspiron 27 7775 | 2.17.0 | 8/9/2022 |
Inspiron 3180 | 1.5.0 | 8/12/2022 |
Inspiron 3185 | 1.5.0 | 8/12/2022 |
Inspiron 3195 2-in-1 | 1.5.0 | 8/11/2022 |
Inspiron 3275 | 1.9.1 | 8/2/2022 |
Inspiron 3475 | 1.9.1 | 8/2/2022 |
Inspiron 3505 | 1.8.0 | 8/9/2022 |
Inspiron 3515 | 1.7.0 | 8/9/2022 |
Inspiron 3585 | 1.9.0 | 8/29/2022 |
Inspiron 3595 | 1.4.0 | 8/9/2022 |
Inspiron 3785 | 1.9.0 | 8/29/2022 |
Inspiron 5405 | 1.8.1 | 9/26/2022 |
Inspiron 5415 | 1.12.0 | 9/14/2022 |
Inspiron 5485 | 2.10.1 | 9/20/2022 |
Inspiron 5485 2-in-1 | 2.10.1 | 9/20/2022 |
Inspiron 5505 | 1.8.1 | 9/26/2022 |
Inspiron 5515 | 1.12.0 | 9/14/2022 |
Inspiron 5585 | 2.10.1 | 9/20/2022 |
Inspiron 7375 | 1.9.0 | 10/4/2022 |
Inspiron 7405 2-in-1 | 1.9.1 | 9/26/2022 |
Inspiron 7415 | 1.12.0 | 9/14/2022 |
Vostro 3405 | 1.8.0 | 8/9/2022 |
Vostro 3515 | 1.7.0 | 8/9/2022 |
Vostro 5415 | 1.12.0 | 9/14/2022 |
Vostro 5515 | 1.12.0 | 9/14/2022 |
Product | BIOS Update Version | BIOS Release Date (MM/DD/YYYY) |
Dell G5 SE 5505 | 1.12.1 | 9/27/2022 |
Inspiron 27 7775 | 2.17.0 | 8/9/2022 |
Inspiron 3180 | 1.5.0 | 8/12/2022 |
Inspiron 3185 | 1.5.0 | 8/12/2022 |
Inspiron 3195 2-in-1 | 1.5.0 | 8/11/2022 |
Inspiron 3275 | 1.9.1 | 8/2/2022 |
Inspiron 3475 | 1.9.1 | 8/2/2022 |
Inspiron 3505 | 1.8.0 | 8/9/2022 |
Inspiron 3515 | 1.7.0 | 8/9/2022 |
Inspiron 3585 | 1.9.0 | 8/29/2022 |
Inspiron 3595 | 1.4.0 | 8/9/2022 |
Inspiron 3785 | 1.9.0 | 8/29/2022 |
Inspiron 5405 | 1.8.1 | 9/26/2022 |
Inspiron 5415 | 1.12.0 | 9/14/2022 |
Inspiron 5485 | 2.10.1 | 9/20/2022 |
Inspiron 5485 2-in-1 | 2.10.1 | 9/20/2022 |
Inspiron 5505 | 1.8.1 | 9/26/2022 |
Inspiron 5515 | 1.12.0 | 9/14/2022 |
Inspiron 5585 | 2.10.1 | 9/20/2022 |
Inspiron 7375 | 1.9.0 | 10/4/2022 |
Inspiron 7405 2-in-1 | 1.9.1 | 9/26/2022 |
Inspiron 7415 | 1.12.0 | 9/14/2022 |
Vostro 3405 | 1.8.0 | 8/9/2022 |
Vostro 3515 | 1.7.0 | 8/9/2022 |
Vostro 5415 | 1.12.0 | 9/14/2022 |
Vostro 5515 | 1.12.0 | 9/14/2022 |
None.
Revision | Date | Description |
1.0 | 2022/10/27 | Initial Release |
Dell Technologies would like to thank Jiawei Yin (Yngweijw) for reporting CVE-2022-34393 and CVE-2022-34460.