CVE-2022-34393: Input Validation
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-34393?
CVE-2022-34393 is a vulnerability found in Dell BIOS that allows a local authenticated malicious user to gain arbitrary code execution in SMRAM.
Who is affected by CVE-2022-34393?
Dell G5 Se 5505 Firmware (up to version 1.12.1), Dell Inspiron 27 7775 Firmware (up to version 2.17.0), and other Dell models mentioned in the affected software section are affected by CVE-2022-34393.
How severe is CVE-2022-34393?
CVE-2022-34393 has a severity rating of 7.5 (High).
How can the CVE-2022-34393 vulnerability be fixed?
To fix the CVE-2022-34393 vulnerability, users should update their Dell BIOS firmware to the latest version provided by Dell.
Where can I find more information about CVE-2022-34393?
More information about CVE-2022-34393 can be found on the Dell support website at the provided reference link.