DSA-2025-299: Security Update for Dell PowerEdge Server BIOS for an Access of Memory Location After End of Buffer Vulnerability
Summary: Dell PowerEdge Server BIOS remediation is available for an Access of Memory Location After End of Buffer vulnerability that could be exploited by malicious users to compromise the affected system. ...
Impact
Low
Details
|
Proprietary Code CVEs |
Description |
CVSS Base Score |
CVSS Vector String |
|
CVE-2025-36581 |
Dell PowerEdge Platform version(s) 14G AMD BIOS v1.25.0 and prior, contain(s) an Access of Memory Location After End of Buffer vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Information exposure. |
3.8 |
|
Proprietary Code CVEs |
Description |
CVSS Base Score |
CVSS Vector String |
|
CVE-2025-36581 |
Dell PowerEdge Platform version(s) 14G AMD BIOS v1.25.0 and prior, contain(s) an Access of Memory Location After End of Buffer vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Information exposure. |
3.8 |
Affected Products & Remediation
|
Product |
Software/Firmware |
Affected Versions |
Remediated Versions |
Link |
|
PowerEdge R6415 |
BIOS |
Versions prior to 1.26.0 |
Version 1.26.0 or later |
https://www.dell.com/support/product-details/product/poweredge-r6415/drivers |
|
PowerEdge R7415 |
BIOS |
Versions prior to 1.26.0 |
Version 1.26.0 or later |
https://www.dell.com/support/product-details/product/poweredge-r7415/drivers |
|
PowerEdge R7425 |
BIOS |
Versions prior to 1.26.0 |
Version 1.26.0 or later |
https://www.dell.com/support/product-details/product/poweredge-r7425/drivers |
|
Product |
Software/Firmware |
Affected Versions |
Remediated Versions |
Link |
|
PowerEdge R6415 |
BIOS |
Versions prior to 1.26.0 |
Version 1.26.0 or later |
https://www.dell.com/support/product-details/product/poweredge-r6415/drivers |
|
PowerEdge R7415 |
BIOS |
Versions prior to 1.26.0 |
Version 1.26.0 or later |
https://www.dell.com/support/product-details/product/poweredge-r7415/drivers |
|
PowerEdge R7425 |
BIOS |
Versions prior to 1.26.0 |
Version 1.26.0 or later |
https://www.dell.com/support/product-details/product/poweredge-r7425/drivers |
The Affected Products and Remediation table above may not be a comprehensive list of all affected supported versions and may be updated as more information becomes available.
Revision History
|
Revision |
Date |
Description |
|
1.0 |
2025-08-13 |
Initial release |
Acknowledgements
Dell would like to thank codebreaker1337 for reporting this issue.