DSA-2024-027: Security Update for Dell Client Platform AMD BIOS Vulnerability
Summary: Dell Client remediation is available for a Cross-Process Information Leak Vulnerability that could be exploited by malicious users to compromise the affected system.
Impact
Medium
Details
| Third-party Component | CVEs | More Information |
|---|---|---|
| AMD BIOS | CVE-2023-20593 | See NVD link below for individual scores for each CVE. http://nvd.nist.gov/ AMD-SB-7008 |
Affected Products & Remediation
| Product |
Software/Firmware |
Affected Versions |
Remediated Versions |
Release Date (MM/DD/YYYY) Expected Release (Month YYYY) |
Link |
| Alienware Aurora R10 |
BIOS |
Versions prior to 2.8.0 |
Versions 2.8.0 or later |
05/06/2024 |
|
| Alienware Aurora Ryzen Edition R14 |
BIOS |
Versions prior to 2.18.0 |
Versions 2.18.0 or later |
06/05/2024 |
|
| Dell G5 5505 |
BIOS |
Versions prior to 1.23.0 |
Versions 1.23.0 or later |
08/13/2024 |
|
| Inspiron 15 3525 |
BIOS |
Versions prior to 1.22.0 |
Versions 1.22.0 or later |
11/12/2024 |
|
| Inspiron 15 3535 |
BIOS |
Versions prior to 1.13.1 |
Versions 1.13.1 or later |
05/14/2024 |
|
| Inspiron 5405 |
BIOS |
Versions prior to 1.19.0 |
Versions 1.19.0 or later |
08/13/2024 |
|
| Inspiron 5415 |
BIOS |
Versions prior to 1.22.0 |
Versions 1.22.0 or later |
05/13/2024 |
|
| Inspiron 5505 |
BIOS |
Versions prior to 1.19.0 |
Versions 1.19.0 or later |
08/13/2024 |
|
| Inspiron 5515 |
BIOS |
Versions prior to 1.22.0 |
Versions 1.22.0 or later |
05/13/2024 |
|
| Inspiron 7405 2-in-1 |
BIOS |
Versions prior to 1.19.0 |
Versions 1.19.0 or later |
08/13/2024 |
|
| Inspiron 7415 2-in-1 |
BIOS |
Versions prior to 1.22.0 |
Versions 1.22.0 or later |
05/13/2024 |
|
| Vostro 14 3425 |
BIOS |
Versions prior to 1.22.0 |
Versions 1.22.0 or later |
11/12/2024 |
|
| Vostro 15 3525 |
BIOS |
Versions prior to 1.22.0 |
Versions 1.22.0 or later |
11/12/2024 |
|
| Vostro 15 3535 |
BIOS |
Versions prior to 1.13.1 |
Versions 1.13.1 or later |
05/14/2024 |
|
| Vostro 5415 |
BIOS |
Versions prior to 1.22.0 |
Versions 1.22.0 or later |
05/13/2024 |
|
| Vostro 5515 |
BIOS |
Versions prior to 1.22.0 |
Versions 1.22.0 or later |
05/13/2024 |
| Product |
Software/Firmware |
Affected Versions |
Remediated Versions |
Release Date (MM/DD/YYYY) Expected Release (Month YYYY) |
Link |
| Alienware Aurora R10 |
BIOS |
Versions prior to 2.8.0 |
Versions 2.8.0 or later |
05/06/2024 |
|
| Alienware Aurora Ryzen Edition R14 |
BIOS |
Versions prior to 2.18.0 |
Versions 2.18.0 or later |
06/05/2024 |
|
| Dell G5 5505 |
BIOS |
Versions prior to 1.23.0 |
Versions 1.23.0 or later |
08/13/2024 |
|
| Inspiron 15 3525 |
BIOS |
Versions prior to 1.22.0 |
Versions 1.22.0 or later |
11/12/2024 |
|
| Inspiron 15 3535 |
BIOS |
Versions prior to 1.13.1 |
Versions 1.13.1 or later |
05/14/2024 |
|
| Inspiron 5405 |
BIOS |
Versions prior to 1.19.0 |
Versions 1.19.0 or later |
08/13/2024 |
|
| Inspiron 5415 |
BIOS |
Versions prior to 1.22.0 |
Versions 1.22.0 or later |
05/13/2024 |
|
| Inspiron 5505 |
BIOS |
Versions prior to 1.19.0 |
Versions 1.19.0 or later |
08/13/2024 |
|
| Inspiron 5515 |
BIOS |
Versions prior to 1.22.0 |
Versions 1.22.0 or later |
05/13/2024 |
|
| Inspiron 7405 2-in-1 |
BIOS |
Versions prior to 1.19.0 |
Versions 1.19.0 or later |
08/13/2024 |
|
| Inspiron 7415 2-in-1 |
BIOS |
Versions prior to 1.22.0 |
Versions 1.22.0 or later |
05/13/2024 |
|
| Vostro 14 3425 |
BIOS |
Versions prior to 1.22.0 |
Versions 1.22.0 or later |
11/12/2024 |
|
| Vostro 15 3525 |
BIOS |
Versions prior to 1.22.0 |
Versions 1.22.0 or later |
11/12/2024 |
|
| Vostro 15 3535 |
BIOS |
Versions prior to 1.13.1 |
Versions 1.13.1 or later |
05/14/2024 |
|
| Vostro 5415 |
BIOS |
Versions prior to 1.22.0 |
Versions 1.22.0 or later |
05/13/2024 |
|
| Vostro 5515 |
BIOS |
Versions prior to 1.22.0 |
Versions 1.22.0 or later |
05/13/2024 |
Workarounds & Mitigations
None
Revision History
| Revision | Date | Description |
|---|---|---|
| 1.0 | 2024-04-09 | Initial Release |
| 2.0 | 2024-04-12 | Updated for enhanced presentation with no changes to content. |
| 3.0 | 2024-06-25 | Updated Affected Products and Remediation section: Platform List Update Updated Third-party component section: Added NVD link |
| 4.0 | 2024-06-28 | Updated Third-party component section: Fixed link for AMD |
| 5.0 | 2024-08-14 | Updated Affected Products and Remediation section: Platform List Update |
| 6.0 | 2024-11-13 | Updated Affected Products and Remediation section: Final Platform Update |