First published: Mon Sep 12 2022(Updated: )
Dell BIOS versions contain a Missing Release of Resource after Effective Lifetime vulnerability. A local authenticated administrator user could potentially exploit this vulnerability by consuming excess memory in order to cause the application to crash.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell Chengming 3900 Firmware | <1.1.66 | |
Dell Chengming 3900 | ||
<1.2.0 | ||
<1.2.0 | ||
Dell Inspiron 3910 Firmware | <1.1.66 | |
Dell Inspiron 3910 | ||
<1.1.0 | ||
<1.4.1 | ||
<1.4.1 | ||
<1.3.0 | ||
<1.3.0 | ||
Dell Optiplex 3000 Firmware | <1.1.66 | |
Dell Optiplex 3000 | ||
Dell Optiplex 3000 Thin Client Firmware | <1.0.7 | |
Dell Optiplex 3000 Thin Client | ||
Dell Optiplex 5000 Firmware | <1.3.62 | |
Dell Optiplex 5000 | ||
<1.0.13 | ||
Dell Optiplex 5400 | ||
Dell Optiplex 7000 Firmware | <1.3.62 | |
Dell Optiplex 7000 | ||
<1.3.62 | ||
<1.0.13 | ||
Dell Precision 3460 Small Form Factor Firmware | <1.3.62 | |
Dell Precision 3460 Small Form Factor | ||
<1.3.71 | ||
<1.6.0 | ||
Dell Vostro 3710 Firmware | <1.1.66 | |
Dell Vostro 3710 | ||
Dell Vostro 3910 Firmware | <1.1.66 | |
Dell Vostro 3910 | ||
<1.1.0 | ||
<1.4.1 | ||
<1.2.0 | ||
<1.6.0 | ||
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-31222 is a Missing Release of Resource after Effective Lifetime vulnerability found in Dell BIOS versions.
A local authenticated administrator user can potentially exploit CVE-2022-31222.
CVE-2022-31222 can be exploited by consuming excess memory to cause the application to crash.
CVE-2022-31222 has a severity rating of medium (4.4).
To fix CVE-2022-31222, update your Dell BIOS versions to the latest available version.