CVE-2020-26186: High severity dell inspiron 5675 firmware vulnerability
Dell Inspiron 5675 BIOS versions prior to 1.4.1 contain a UEFI BIOS RuntimeServices overwrite vulnerability. A local attacker with access to system memory may exploit this vulnerability by overwriting the RuntimeServices structure to execute arbitrary code in System Management Mode (SMM).
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-26186?
CVE-2020-26186 is a UEFI BIOS RuntimeServices overwrite vulnerability found in Dell Inspiron 5675 BIOS versions prior to 1.4.1.
What is the severity of CVE-2020-26186?
CVE-2020-26186 has a severity rating of 6.8 out of 10, which is considered high.
How does CVE-2020-26186 work?
An attacker with access to system memory can exploit CVE-2020-26186 by overwriting the RuntimeServices structure to execute arbitrary code in System Management Mode (SMM).
Which Dell Inspiron 5675 BIOS versions are affected by CVE-2020-26186?
Dell Inspiron 5675 BIOS versions prior to 1.4.1 are affected by CVE-2020-26186.
How can I fix CVE-2020-26186?
To fix CVE-2020-26186, update your Dell Inspiron 5675 BIOS to version 1.4.1 or later.