CVE-2022-31222: Medium severity dell chengming 3900 vulnerability
Published Sep 12, 2022
·Updated
Dell BIOS versions contain a Missing Release of Resource after Effective Lifetime vulnerability. A local authenticated administrator user could potentially exploit this vulnerability by consuming excess memory in order to cause the application to crash.
Affected Software
50 affected components
Dell Chengming 3900 Firmware<1.1.66
Dell Chengming 3900
Dell Inspiron 14 Plus 7420 Firmware<1.2.0
Dell Inspiron 14 Plus 7420
Dell Inspiron 16 Plus 7620 Firmware<1.2.0
Dell Inspiron 16 Plus 7620
Dell Inspiron 3910 Firmware<1.1.66
Dell Inspiron 3910
Dell Inspiron 5320 Firmware<1.1.0
Dell Inspiron 5320
Dell Inspiron 5420 Firmware<1.4.1
Dell Inspiron 5420
Dell Inspiron 5620 Firmware<1.4.1
Dell Inspiron 5620
Dell Inspiron 7420 Firmware<1.3.0
Dell Inspiron 7420
Dell Inspiron 7620 Firmware<1.3.0
Dell Inspiron 7620
Dell Optiplex 3000 Firmware<1.1.66
Dell Optiplex 3000
Dell Optiplex 3000 Thin Client Firmware<1.0.7
Dell Optiplex 3000 Thin Client
Dell Optiplex 5000 Firmware<1.3.62
Dell Optiplex 5000
Dell Optiplex 5400 Firmware<1.0.13
Dell Optiplex 5400
Dell Optiplex 7000 Firmware<1.3.62
Dell Optiplex 7000
Dell Optiplex 7000 Oem Firmware<1.3.62
Dell Optiplex 7000 Oem
Dell Optiplex 7400 Firmware<1.0.13
Dell Optiplex 7400
Dell Precision 3460 Small Form Factor Firmware<1.3.62
Dell Precision 3460 Small Form Factor
Dell Precision 3660 Tower Firmware<1.3.71
Dell Precision 3660 Tower
Dell Precision 5770 Firmware<1.6.0
Dell Precision 5770
Dell Vostro 3710 Firmware<1.1.66
Dell Vostro 3710
Dell Vostro 3910 Firmware<1.1.66
Dell Vostro 3910
Dell Vostro 5320 Firmware<1.1.0
Dell Vostro 5320
Dell Vostro 5620 Firmware<1.4.1
Dell Vostro 5620
Dell Vostro 7620 Firmware<1.2.0
Dell Vostro 7620
Dell Xps 17 9720 Firmware<1.6.0
Dell Xps 17 9720
Remediation
Patch Available
Event History
Sep 12, 2022
CVE Published
via MITRE·06:35 PM
Data Sourced
via MITRE·06:35 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2022-31222?
CVE-2022-31222 is a Missing Release of Resource after Effective Lifetime vulnerability found in Dell BIOS versions.
2
Who can exploit CVE-2022-31222?
A local authenticated administrator user can potentially exploit CVE-2022-31222.
3
How can CVE-2022-31222 be exploited?
CVE-2022-31222 can be exploited by consuming excess memory to cause the application to crash.
4
What is the severity of CVE-2022-31222?
CVE-2022-31222 has a severity rating of medium (4.4).
5
How can I fix CVE-2022-31222?
To fix CVE-2022-31222, update your Dell BIOS versions to the latest available version.