First published: Mon Sep 12 2022(Updated: )
Dell BIOS versions contain a Stack-based Buffer Overflow vulnerability. A local authenticated malicious user could potentially exploit this vulnerability by sending excess data to a function in order to gain arbitrary code execution on the system.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell Chengming 3900 Firmware | <1.1.66 | |
Dell Chengming 3900 | ||
<1.2.0 | ||
<1.2.0 | ||
Dell Inspiron 3910 Firmware | <1.1.66 | |
Dell Inspiron 3910 | ||
<1.1.0 | ||
<1.4.1 | ||
<1.4.1 | ||
<1.3.0 | ||
<1.3.0 | ||
Dell Optiplex 3000 Firmware | <1.1.66 | |
Dell Optiplex 3000 | ||
Dell Optiplex 3000 Thin Client Firmware | <1.0.7 | |
Dell Optiplex 3000 Thin Client | ||
Dell Optiplex 5000 Firmware | <1.3.62 | |
Dell Optiplex 5000 | ||
<1.0.13 | ||
Dell Optiplex 5400 | ||
Dell Optiplex 7000 Firmware | <1.3.62 | |
Dell Optiplex 7000 | ||
<1.3.62 | ||
<1.0.13 | ||
Dell Precision 3460 Small Form Factor Firmware | <1.3.62 | |
Dell Precision 3460 Small Form Factor | ||
<1.3.71 | ||
<1.6.0 | ||
Dell Vostro 3710 Firmware | <1.1.66 | |
Dell Vostro 3710 | ||
Dell Vostro 3910 Firmware | <1.1.66 | |
Dell Vostro 3910 | ||
<1.1.0 | ||
<1.4.1 | ||
<1.2.0 | ||
<1.6.0 | ||
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2022-31226.
The severity of CVE-2022-31226 is 7.8 (High).
CVE-2022-31226 affects Dell BIOS versions by containing a Stack-based Buffer Overflow vulnerability.
A local authenticated malicious user could potentially exploit CVE-2022-31226.
To mitigate CVE-2022-31226, Dell recommends updating to the latest BIOS version available.