CWE
119 805
Advisory Published
Updated

CVE-2022-34399: Buffer Overflow

First published: Wed Jan 18 2023(Updated: )

Dell Alienware m17 R5 BIOS version prior to 1.2.2 contain a buffer access vulnerability. A malicious user with admin privileges could potentially exploit this vulnerability by sending input larger than expected in order to leak certain sections of SMRAM.

Credit: security_alert@emc.com

Affected SoftwareAffected VersionHow to fix
Dell Alienware M15 A6 Firmware<1.4.3
Dell Alienware M15 A6
Dell Alienware M15 Ryzen Edition R5 Firmware<1.8.0
Dell Alienware M15 Ryzen Edition R5
Dell Alienware M17 Ryzen Edition R5 Firmware<1.4.3
Dell Alienware M17 Ryzen Edition R5
Dell G15 5515 Firmware<1.8.0
Dell G15 5515
Dell G15 5525 Firmware<1.4.3
Dell G15 5525
Dell Inspiron 3505 Firmware<1.9.0
Dell Inspiron 3505
Dell Inspiron 3515 Firmware<1.9.0
Dell Inspiron 3515
Dell Inspiron 3525 Firmware<1.5.0
Dell Inspiron 3525
Dell Inspiron 3585 Firmware<1.10.0
Dell Inspiron 3585
Dell Inspiron 3595 Firmware<1.5.0
Dell Inspiron 3595
Dell Inspiron 3785 Firmware<1.10.0
Dell Inspiron 3785
Dell Vostro 3405 Firmware<1.9.0
Dell Vostro 3405
Dell Vostro 3425 Firmware<1.5.0
Dell Vostro 3425
Dell Vostro 3515 Firmware<1.9.0
Dell Vostro 3515
Dell Vostro 3525 Firmware<1.5.0
Dell Vostro 3525

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Frequently Asked Questions

  • What is CVE-2022-34399?

    CVE-2022-34399 is a vulnerability found in Dell Alienware m17 R5 BIOS version prior to 1.2.2 that allows a malicious user with admin privileges to exploit a buffer access vulnerability.

  • How severe is CVE-2022-34399?

    CVE-2022-34399 has a severity score of 2.3, which is considered medium severity.

  • How can the Dell Alienware m17 R5 BIOS vulnerability be exploited?

    The vulnerability in Dell Alienware m17 R5 BIOS can be exploited by sending input larger than expected to leak certain sections of SMRAM.

  • Which Dell Alienware models are affected by CVE-2022-34399?

    Dell Alienware M15 A6 Firmware, Dell Alienware M15 Ryzen Edition R5 Firmware, and Dell Alienware M17 Ryzen Edition R5 Firmware are affected by CVE-2022-34399.

  • How can I fix CVE-2022-34399?

    To fix CVE-2022-34399, update the Dell Alienware m17 R5 BIOS to version 1.2.2 or later.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2024 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203