CVE-2022-34422: Buffer Overflow
Dell PowerEdge BIOS and Dell Precision BIOS contain an Improper SMM communication buffer verification vulnerability. A local malicious user with high Privileges may potentially exploit this vulnerability to perform arbitrary code execution or cause denial of service.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2022-34422?
CVE-2022-34422 has a high severity rating due to the potential for arbitrary code execution or denial of service by a local malicious user with high privileges.
How do I fix CVE-2022-34422?
To remediate CVE-2022-34422, users should update to the latest firmware version provided by Dell for affected PowerEdge and Precision BIOS.
What systems are affected by CVE-2022-34422?
CVE-2022-34422 affects various Dell PowerEdge and Precision BIOS systems, particularly those with firmware versions below 2.9.4 or 2.16.1, depending on the model.
Who can exploit CVE-2022-34422?
CVE-2022-34422 can be exploited by local malicious users with high privileges who have access to the affected systems.
What type of vulnerability is CVE-2022-34422?
CVE-2022-34422 is classified as an improper SMM communication buffer verification vulnerability.