CVE-2021-36283
6.7
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Exploitability: 0.8 / Impact: 5.9
Source: NVD
Description
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM.
Affected (85)
Products: Dell: Chengming 3990 Firmware, Chengming 3991 Firmware, G3 15 3500 Firmware, G3 15 3590 Firmware, G3 15 5500 Firmware, Inspiron 3493 Firmware, Inspiron 3501 Firmware, Inspiron 3593 Firmware, Inspiron 3793 Firmware, Inspiron 3880 Firmware, Inspiron 3881 Firmware, Inspiron 5400 2 In 1 Firmware, Inspiron 5490 Firmware, Inspiron 5493 Firmware, Inspiron 5498 Firmware, Inspiron 5590 Firmware, Inspiron 5593 Firmware, Inspiron 5598 Firmware, Inspiron 7391 2 In 1 Firmware, Inspiron 7500 Firmware, Inspiron 7500 2 In 1 Silver Firmware, Inspiron 7501 Firmware, Inspiron 7590 Firmware, Inspiron 7591 Firmware, Latitude 3310 Firmware, Latitude 3310 2 In 1 Firmware, Latitude 5300 Firmware, Latitude 5300 2 In 1 Firmware, Latitude 5310 Firmware, Latitude 5310 2 In 1 Firmware, Latitude 5400 Firmware, Latitude 5401 Firmware, Latitude 5410 Firmware, Latitude 5411 Firmware, Latitude 5500 Firmware, Latitude 5511 Firmware, Latitude 7200 2 In 1 Firmware, Latitude 7210 2 In 1 Firmware, Latitude 7220ex Rugged Extreme Tablet Firmware, Latitude 7300 Firmware, Latitude 7310 Firmware, Latitude 7400 Firmware, Latitude 7400 2 In 1 Firmware, Latitude 7410 Firmware, Latitude 9410 Firmware, Latitude 9510 Firmware, Optiplex 3080 Firmware, Optiplex 3280 Aio Firmware, Optiplex 5080 Firmware, Optiplex 5480 Aio Firmware, Optiplex 7080 Firmware, Optiplex 7480 Aio Firmware, Optiplex 7780 Aio Firmware, Precision 3440 Firmware, Precision 3540 Firmware, Precision 3541 Firmware, Precision 3550 Firmware, Precision 3551 Firmware, Precision 3640 Tower Firmware, Precision 5540 Firmware, Precision 5550 Firmware, Precision 5750 Firmware, Precision 7540 Firmware, Precision 7550 Firmware, Precision 7740 Firmware, Precision 7750 Firmware, Vostro 3401 Firmware, Vostro 3491 Firmware, Vostro 3501 Firmware, Vostro 3591 Firmware, Vostro 3681 Firmware, Vostro 3881 Firmware, Vostro 3888 Firmware, Vostro 5490 Firmware, Vostro 5590 Firmware, Vostro 7500 Firmware, Vostro 7590 Firmware, Wyse 5470 Firmware, Xps 13 9300 Firmware, Xps 13 9380 Firmware, Xps 17 9700 Firmware, Xps 7380 Firmware, Xps 7590 Firmware, Xps 7390 2 In 1 Firmware, Xps 9500 Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.3.1 |
| Running on/with | Platform Versions |
|---|---|
Dell Chengming 3990 | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.3.1 |
| Running on/with | Platform Versions |
|---|---|
Dell Chengming 3991 | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.7.1 |
| Running on/with | Platform Versions |
|---|---|
Dell G3 15 3500 | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.12.0 |
| Running on/with | Platform Versions |
|---|---|
Dell G3 15 3590 | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.7.1 |
| Running on/with | Platform Versions |
|---|---|
Dell G3 15 5500 | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.12.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Inspiron 3493 | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.1.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Inspiron 3501 | All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.12.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Inspiron 3593 | All versions |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.12.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Inspiron 3793 | All versions |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.3.1 |
| Running on/with | Platform Versions |
|---|---|
Dell Inspiron 3880 | All versions |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.3.1 |
| Running on/with | Platform Versions |
|---|---|
Dell Inspiron 3881 | All versions |
Configuration L
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.5.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Inspiron 5400 2 In 1 | All versions |
Configuration M
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.12.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Inspiron 5490 | All versions |
Configuration N
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.12.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Inspiron 5493 | All versions |
Configuration O
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.12.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Inspiron 5498 | All versions |
Configuration P
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.12.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Inspiron 5590 | All versions |
Configuration Q
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.12.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Inspiron 5593 | All versions |
Configuration R
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.12.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Inspiron 5598 | All versions |
Configuration S
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.9.1 |
| Running on/with | Platform Versions |
|---|---|
Dell Inspiron 7391 2 In 1 | All versions |
Configuration T
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.5.1 |
| Running on/with | Platform Versions |
|---|---|
Dell Inspiron 7500 | All versions |
Configuration U
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.5.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Inspiron 7500 2 In 1 Silver | All versions |
Configuration V
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.5.1 |
| Running on/with | Platform Versions |
|---|---|
Dell Inspiron 7501 | All versions |
Configuration W
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.8.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Inspiron 7590 | All versions |
Configuration X
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.8.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Inspiron 7591 | All versions |
Configuration Y
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.8.3 |
| Running on/with | Platform Versions |
|---|---|
Dell Latitude 3310 | All versions |
Configuration Z
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.17.1 |
| Running on/with | Platform Versions |
|---|---|
Dell Latitude 3310 2 In 1 | All versions |
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.12.1 |
| Running on/with | Platform Versions |
|---|---|
Dell Latitude 5300 | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.12.1 |
| Running on/with | Platform Versions |
|---|---|
Dell Latitude 5300 2 In 1 | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.4.2 |
| Running on/with | Platform Versions |
|---|---|
Dell Latitude 5310 | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.4.2 |
| Running on/with | Platform Versions |
|---|---|
Dell Latitude 5310 2 In 1 | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.10.1 |
| Running on/with | Platform Versions |
|---|---|
Dell Latitude 5400 | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.11.1 |
| Running on/with | Platform Versions |
|---|---|
Dell Latitude 5401 | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.4.3 |
| Running on/with | Platform Versions |
|---|---|
Dell Latitude 5410 | All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.4.3 |
| Running on/with | Platform Versions |
|---|---|
Dell Latitude 5411 | All versions |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.10.1 |
| Running on/with | Platform Versions |
|---|---|
Dell Latitude 5500 | All versions |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.4.3 |
| Running on/with | Platform Versions |
|---|---|
Dell Latitude 5511 | All versions |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.10.1 |
| Running on/with | Platform Versions |
|---|---|
Dell Latitude 7200 2 In 1 | All versions |
Configuration L
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.5.1 |
| Running on/with | Platform Versions |
|---|---|
Dell Latitude 7210 2 In 1 | All versions |
Configuration M
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.9.1 |
| Running on/with | Platform Versions |
|---|---|
Dell Latitude 7220ex Rugged Extreme Tablet | All versions |
Configuration N
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.11.1 |
| Running on/with | Platform Versions |
|---|---|
Dell Latitude 7300 | All versions |
Configuration O
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.5.1 |
| Running on/with | Platform Versions |
|---|---|
Dell Latitude 7310 | All versions |
Configuration P
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.11.1 |
| Running on/with | Platform Versions |
|---|---|
Dell Latitude 7400 | All versions |
Configuration Q
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.10.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Latitude 7400 2 In 1 | All versions |
Configuration R
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.5.1 |
| Running on/with | Platform Versions |
|---|---|
Dell Latitude 7410 | All versions |
Configuration S
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.5.1 |
| Running on/with | Platform Versions |
|---|---|
Dell Latitude 9410 | All versions |
Configuration T
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.4.2 |
| Running on/with | Platform Versions |
|---|---|
Dell Latitude 9510 | All versions |
Configuration U
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.3.1 |
| Running on/with | Platform Versions |
|---|---|
Dell Optiplex 3080 | All versions |
Configuration V
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.3.1 |
| Running on/with | Platform Versions |
|---|---|
Dell Optiplex 3280 Aio | All versions |
Configuration W
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.3.1 |
| Running on/with | Platform Versions |
|---|---|
Dell Optiplex 5080 | All versions |
Configuration X
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.4.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Optiplex 5480 Aio | All versions |
Configuration Y
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.3.10 |
| Running on/with | Platform Versions |
|---|---|
Dell Optiplex 7080 | All versions |
Configuration Z
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.6.2 |
| Running on/with | Platform Versions |
|---|---|
Dell Optiplex 7480 Aio | All versions |
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.6.2 |
| Running on/with | Platform Versions |
|---|---|
Dell Optiplex 7780 Aio | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.3.10 |
| Running on/with | Platform Versions |
|---|---|
Dell Precision 3440 | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.10.1 |
| Running on/with | Platform Versions |
|---|---|
Dell Precision 3540 | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.11.1 |
| Running on/with | Platform Versions |
|---|---|
Dell Precision 3541 | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.4.3 |
| Running on/with | Platform Versions |
|---|---|
Dell Precision 3550 | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.4.3 |
| Running on/with | Platform Versions |
|---|---|
Dell Precision 3551 | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.4.3 |
| Running on/with | Platform Versions |
|---|---|
Dell Precision 3640 Tower | All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.9.1 |
| Running on/with | Platform Versions |
|---|---|
Dell Precision 5540 | All versions |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.6.1 |
| Running on/with | Platform Versions |
|---|---|
Dell Precision 5550 | All versions |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.6.3 |
| Running on/with | Platform Versions |
|---|---|
Dell Precision 5750 | All versions |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.11.2 |
| Running on/with | Platform Versions |
|---|---|
Dell Precision 7540 | All versions |
Configuration L
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.6.2 |
| Running on/with | Platform Versions |
|---|---|
Dell Precision 7550 | All versions |
Configuration M
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.11.2 |
| Running on/with | Platform Versions |
|---|---|
Dell Precision 7740 | All versions |
Configuration N
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.6.2 |
| Running on/with | Platform Versions |
|---|---|
Dell Precision 7750 | All versions |
Configuration O
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.1.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Vostro 3401 | All versions |
Configuration P
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.12.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Vostro 3491 | All versions |
Configuration Q
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.1.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Vostro 3501 | All versions |
Configuration R
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.12.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Vostro 3591 | All versions |
Configuration S
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.3.1 |
| Running on/with | Platform Versions |
|---|---|
Dell Vostro 3681 | All versions |
Configuration T
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.3.1 |
| Running on/with | Platform Versions |
|---|---|
Dell Vostro 3881 | All versions |
Configuration U
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.3.1 |
| Running on/with | Platform Versions |
|---|---|
Dell Vostro 3888 | All versions |
Configuration V
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.12.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Vostro 5490 | All versions |
Configuration W
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.12.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Vostro 5590 | All versions |
Configuration X
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.5.1 |
| Running on/with | Platform Versions |
|---|---|
Dell Vostro 7500 | All versions |
Configuration Y
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.8.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Vostro 7590 | All versions |
Configuration Z
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.6.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Wyse 5470 | All versions |
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.4.1 |
| Running on/with | Platform Versions |
|---|---|
Dell Xps 13 9300 | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.12.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Xps 13 9380 | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.6.3 |
| Running on/with | Platform Versions |
|---|---|
Dell Xps 17 9700 | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.7.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Xps 7380 | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.9.1 |
| Running on/with | Platform Versions |
|---|---|
Dell Xps 7590 | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.7.1 |
| Running on/with | Platform Versions |
|---|---|
Dell Xps 7390 2 In 1 | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.6.1 |
| Running on/with | Platform Versions |
|---|---|
Dell Xps 9500 | All versions |
References (2)
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Timeline
No history available yet.