First published: Tue Sep 01 2020(Updated: )
Dell Inspiron 7347 BIOS versions prior to A13 contain a UEFI BIOS Boot Services overwrite vulnerability. A local attacker with access to system memory may exploit this vulnerability by overwriting the EFI_BOOT_SERVICES structure to execute arbitrary code in System Management Mode (SMM).
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell BIOS | <a13 | |
Dell Inspiron 7347 BIOS |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-5376 is considered a high severity vulnerability due to its potential for arbitrary code execution in System Management Mode.
To fix CVE-2020-5376, update the Dell Inspiron 7347 BIOS to version A13 or later.
CVE-2020-5376 affects users of Dell Inspiron 7347 with BIOS versions prior to A13.
CVE-2020-5376 enables a local attacker to overwrite the EFI_BOOT_SERVICES structure for executing arbitrary code.
There is no specific workaround for CVE-2020-5376; the recommended action is to update the BIOS.