CVE-2022-22558
6.0
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H
Exploitability: 0.8 / Impact: 5.2
Source: NVD
Description
Dell PowerEdge Server BIOS and Dell Precision Workstation 7910 and 7920 Rack BIOS contain an Improper SMM communication buffer verification vulnerability. A Local High Privileged attacker could potentially exploit this vulnerability leading to arbitrary writes or denial of service.
Affected (20)
Products: Dell: R6415 Firmware, R7415 Firmware, R7425 Firmware, R730 Firmware, R730xd Firmware, R630 Firmware, C4130 Firmware, M630 Firmware, M630p Firmware, Fc630 Firmware, Fc430 Firmware, M830 Firmware, M830p Firmware, Fc830 Firmware, T630 Firmware, R530 Firmware, R430 Firmware, T430 Firmware, R830 Firmware, C6320 Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.18.0 |
| Running on/with | Platform Versions |
|---|---|
Dell R6415 | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.18.0 |
| Running on/with | Platform Versions |
|---|---|
Dell R7415 | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.18.0 |
| Running on/with | Platform Versions |
|---|---|
Dell R7425 | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.14.0 |
| Running on/with | Platform Versions |
|---|---|
Dell R730 | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.14.0 |
| Running on/with | Platform Versions |
|---|---|
Dell R730xd | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.14.0 |
| Running on/with | Platform Versions |
|---|---|
Dell R630 | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.14.0 |
| Running on/with | Platform Versions |
|---|---|
Dell C4130 | All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.14.0 |
| Running on/with | Platform Versions |
|---|---|
Dell M630 | All versions |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.14.0 |
| Running on/with | Platform Versions |
|---|---|
Dell M630p | All versions |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.14.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Fc630 | All versions |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.14.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Fc430 | All versions |
Configuration L
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.14.0 |
| Running on/with | Platform Versions |
|---|---|
Dell M830 | All versions |
Configuration M
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.14.0 |
| Running on/with | Platform Versions |
|---|---|
Dell M830p | All versions |
Configuration N
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.14.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Fc830 | All versions |
Configuration O
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.14.0 |
| Running on/with | Platform Versions |
|---|---|
Dell T630 | All versions |
Configuration P
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.14.0 |
| Running on/with | Platform Versions |
|---|---|
Dell R530 | All versions |
Configuration Q
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.14.0 |
| Running on/with | Platform Versions |
|---|---|
Dell R430 | All versions |
Configuration R
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.14.0 |
| Running on/with | Platform Versions |
|---|---|
Dell T430 | All versions |
Configuration S
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.14.0 |
| Running on/with | Platform Versions |
|---|---|
Dell R830 | All versions |
Configuration T
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.14.1 |
| Running on/with | Platform Versions |
|---|---|
Dell C6320 | All versions |
References (2)
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.