First published: Mon Sep 12 2022(Updated: )
Dell BIOS versions contain an Improper Protection Against Voltage and Clock Glitches vulnerability. An attacker with physical access to the system could potentially exploit this vulnerability by triggering a fault condition in order to change the behavior of the system.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell Chengming 3900 Firmware | <1.1.66 | |
Dell Chengming 3900 | ||
<1.2.0 | ||
<1.2.0 | ||
Dell Inspiron 3910 Firmware | <1.1.66 | |
Dell Inspiron 3910 | ||
<1.1.0 | ||
<1.4.1 | ||
<1.4.1 | ||
<1.3.0 | ||
<1.3.0 | ||
Dell Optiplex 3000 Firmware | <1.1.66 | |
Dell Optiplex 3000 | ||
Dell Optiplex 3000 Thin Client Firmware | <1.0.7 | |
Dell Optiplex 3000 Thin Client | ||
Dell Optiplex 5000 Firmware | <1.3.62 | |
Dell Optiplex 5000 | ||
<1.0.13 | ||
Dell Optiplex 5400 | ||
Dell Optiplex 7000 Firmware | <1.3.62 | |
Dell Optiplex 7000 | ||
<1.3.62 | ||
<1.0.13 | ||
Dell Precision 3460 Small Form Factor Firmware | <1.3.62 | |
Dell Precision 3460 Small Form Factor | ||
<1.3.71 | ||
<1.6.0 | ||
Dell Vostro 3710 Firmware | <1.1.66 | |
Dell Vostro 3710 | ||
Dell Vostro 3910 Firmware | <1.1.66 | |
Dell Vostro 3910 | ||
<1.1.0 | ||
<1.4.1 | ||
<1.2.0 | ||
<1.6.0 | ||
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-31224 is a vulnerability in Dell BIOS versions that allows an attacker with physical access to the system to change its behavior by triggering a fault condition.
CVE-2022-31224 affects Dell BIOS versions by exposing them to an Improper Protection Against Voltage and Clock Glitches vulnerability.
The severity of CVE-2022-31224 is low, with a severity value of 2.4.
Dell BIOS versions including Dell Chengming 3900 Firmware, Dell Inspiron 3910 Firmware, Dell Optiplex 3000 Firmware, Dell Optiplex 3000 Thin Client Firmware, Dell Optiplex 5000 Firmware, Dell Optiplex 5400 Firmware, Dell Optiplex 7000 Firmware, Dell Optiplex 7000 OEM Firmware, Dell Optiplex 7400 Firmware, Dell Precision 3460 Small Form Factor Firmware, Dell Precision 3660 Tower Firmware, Dell Precision 5770 Firmware, Dell Vostro 3710 Firmware, Dell Vostro 3910 Firmware, Dell Vostro 5320 Firmware, Dell Vostro 5620 Firmware, Dell Vostro 7620 Firmware, and Dell XPS 17 9720 Firmware are affected by CVE-2022-31224.
To fix CVE-2022-31224, Dell recommends applying the relevant firmware update provided in their advisory.