CVE-2022-34399: Buffer Overflow
Dell Alienware m17 R5 BIOS version prior to 1.2.2 contain a buffer access vulnerability. A malicious user with admin privileges could potentially exploit this vulnerability by sending input larger than expected in order to leak certain sections of SMRAM.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-34399?
CVE-2022-34399 is a vulnerability found in Dell Alienware m17 R5 BIOS version prior to 1.2.2 that allows a malicious user with admin privileges to exploit a buffer access vulnerability.
How severe is CVE-2022-34399?
CVE-2022-34399 has a severity score of 2.3, which is considered medium severity.
How can the Dell Alienware m17 R5 BIOS vulnerability be exploited?
The vulnerability in Dell Alienware m17 R5 BIOS can be exploited by sending input larger than expected to leak certain sections of SMRAM.
Which Dell Alienware models are affected by CVE-2022-34399?
Dell Alienware M15 A6 Firmware, Dell Alienware M15 Ryzen Edition R5 Firmware, and Dell Alienware M17 Ryzen Edition R5 Firmware are affected by CVE-2022-34399.
How can I fix CVE-2022-34399?
To fix CVE-2022-34399, update the Dell Alienware m17 R5 BIOS to version 1.2.2 or later.