CVE-2024-32858
8.2
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
Exploitability: 1.5 / Impact: 6.0
Source: NVD
Description
Dell Client Platform BIOS contains an Improper Input Validation vulnerability in an externally developed component. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Code execution.
Affected (23)
Products: Dell: Xps 8960 Firmware, Xps 8950 Firmware, Inspiron 3502 Firmware, Inspiron 15 3521 Firmware, Inspiron 15 3510 Firmware, Aurora R16 Firmware, Alienware X17 R2 Firmware, Alienware X17 R1 Firmware, Alienware X15 R2 Firmware, Alienware X15 R1 Firmware, Alienware X14 Firmware, Alienware M17 R4 Firmware, Alienware M17 R3 Firmware, Alienware M15 R4 Firmware, Alienware M15 R3 Firmware, Alienware Aurora Ryzen Edition R14 Firmware, Alienware Aurora R15 Amd Firmware, Alienware Aurora R15 Firmware, Alienware Aurora R13 Firmware, Alienware Aurora R12 Firmware, Alienware Aurora R11 Firmware, Alienware Aurora R10 Firmware, Alienware Area 51m R2 Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.6.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Xps 8960 | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.19.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Xps 8950 | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.16.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Inspiron 3502 | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.14.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Inspiron 15 3521 | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.19.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Inspiron 15 3510 | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.7.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Aurora R16 | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.20.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Alienware X17 R2 | All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.22.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Alienware X17 R1 | All versions |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.20.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Alienware X15 R2 | All versions |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.22.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Alienware X15 R1 | All versions |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.18.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Alienware X14 | All versions |
Configuration L
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.21.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Alienware M17 R4 | All versions |
Configuration M
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.27.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Alienware M17 R3 | All versions |
Configuration N
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.21.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Alienware M15 R4 | All versions |
Configuration O
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.27.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Alienware M15 R3 | All versions |
Configuration P
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.18.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Alienware Aurora Ryzen Edition R14 | All versions |
Configuration Q
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.13.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Alienware Aurora R15 Amd | All versions |
Configuration R
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.12.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Alienware Aurora R15 | All versions |
Configuration S
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.19.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Alienware Aurora R13 | All versions |
Configuration T
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.1.25 |
| Running on/with | Platform Versions |
|---|---|
Dell Alienware Aurora R12 | All versions |
Configuration U
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.0.24 |
| Running on/with | Platform Versions |
|---|---|
Dell Alienware Aurora R11 | All versions |
Configuration V
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.8.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Alienware Aurora R10 | All versions |
Configuration W
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.26.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Alienware Area 51m R2 | All versions |
References (2)
Source: security_alert@emc.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.