First published: Wed Aug 16 2023(Updated: )
Dell BIOS contains an improper authentication vulnerability. A malicious user with physical access to the system may potentially exploit this vulnerability in order to modify a security-critical UEFI variable without knowledge of the BIOS administrator.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell Alienware m15 R7 Firmware | <1.18.0 | |
Dell Alienware m15 R7 Firmware | ||
Dell Alienware m16 firmware | <1.10.1 | |
Dell Alienware m16 | ||
Dell Alienware m18 Firmware | <1.10.1 | |
Dell Alienware m18 | ||
Dell Chengming 3900 | <1.15.0 | |
Dell Chengming 3900 | ||
Dell Chengming 3901 Firmware | <1.15.0 | |
Dell Chengming 3901 | ||
Dell Chengming 3910 Firmware | <1.6.0 | |
Dell Chengming 3910 Firmware | ||
Dell Chengming 3911 Firmware | <1.6.0 | |
Dell Chengming 3911 Firmware | ||
Dell G15 5520 Firmware | <1.18.0 | |
Dell G15 5520 Firmware | ||
Dell G16 7620 Firmware | <1.18.0 | |
Dell G16 7620 Firmware | ||
Dell G3 3500 Firmware | <1.26.0 | |
Dell G3 3500 Firmware | ||
Dell G5 5500 Firmware | <1.26.0 | |
Dell G5 15 5500 | ||
Dell G7 15 7500 Firmware | <1.26.0 | |
Dell G7 15 7500 Firmware | ||
Dell G7 17 7700 Firmware | <1.26.0 | |
Dell G7 17 7700 | ||
Dell Precision 5680 Firmware | <1.4.1 | |
Dell Precision 5680 Firmware | ||
Dell Inspiron 5410 Firmware | <2.20.0 | |
Dell Inspiron 5410 Firmware | ||
Dell inspiron 14 5418 firmware | <2.20.0 | |
Dell Inspiron 14 5418 | ||
Dell Inspiron 15 3511 Firmware | <1.23.0 | |
Dell Inspiron 15 3511 | ||
Dell Inspiron 5510 Firmware | <2.20.0 | |
Dell Inspiron 5510 | ||
Dell Inspiron 15 5518 Firmware | <2.20.0 | |
Dell Inspiron 15 5518 | ||
Dell Inspiron 24 5420 All-in-One Firmware | <1.4.0 | |
Dell Inspiron 24 5420 All-in-One Firmware | ||
Dell Inspiron 24 5421 All-in-One Firmware | <1.4.0 | |
Dell Inspiron 24 5421 All-in-One | ||
Dell Inspiron 27 7720 All-in-One Firmware | <1.4.0 | |
Dell Inspiron 27 7720 All-in-One | ||
Dell Inspiron 3020 Desktop Firmware | <=1.6.0 | |
Dell Inspiron 3020 Small Desktop | ||
Dell Inspiron 3020 Desktop Firmware | <1.6.0 | |
Dell Inspiron 3020 Desktop | ||
Dell Inspiron 3493 Firmware | <1.27.0 | |
Dell Inspiron 3493 Firmware | ||
Dell Inspiron 3511 Firmware | <1.23.0 | |
Dell Inspiron 15 3511 | ||
Dell Inspiron 3593 Firmware | <1.27.0 | |
Dell Inspiron 3593 Firmware | ||
Dell Inspiron 3793 Firmware | <1.27.0 | |
Dell Inspiron 3793 Firmware | ||
Dell Inspiron 3891 Firmware | <1.19.0 | |
Dell Inspiron 3891 | ||
Dell Inspiron 3910 Firmware | <1.15.0 | |
Dell Inspiron 3910 Firmware | ||
Dell Inspiron 14 5410 Firmware | <2.20.0 | |
Dell Inspiron 5410 Firmware | ||
Dell Inspiron 5493 Firmware | <1.27.0 | |
Dell Inspiron 5493 Firmware | ||
Dell Inspiron 5593 | <1.27.0 | |
Dell Inspiron 5593 Firmware | ||
Dell Inspiron 7300 Firmware | <1.19.0 | |
Dell Inspiron 7300 | ||
Dell Inspiron 7490 Firmware | <1.22.0 | |
Dell Inspiron 7490 | ||
Dell Inspiron 7500 Firmware | <1.24.0 | |
Dell Inspiron 7500 Firmware | ||
Dell Inspiron 7500 2-in-1 Firmware | <1.19.0 | |
Dell Inspiron 7500 2-in-1 | ||
Dell Inspiron 7501 Firmware | <1.24.0 | |
Dell Inspiron 7501 Firmware | ||
Dell Inspiron 15 7510 Firmware | <1.17.0 | |
Dell Inspiron 15 7510 | ||
Dell Inspiron 16 7610 Firmware | <1.17.0 | |
Dell Inspiron 7610 Firmware | ||
Dell Latitude 3140 Firmware | <1.8.0 | |
Dell Latitude 3140 Firmware | ||
Dell Latitude 3301 Firmware | <1.27.0 | |
Dell Latitude 3301 Firmware | ||
Dell Latitude 3320 Firmware | <1.23.0 | |
Dell Latitude 3320 Firmware | ||
Dell Latitude 3330 Firmware | <1.15.0 | |
Dell Latitude 3330 Firmware | ||
Dell Latitude 3340 Firmware | <1.6.0 | |
Dell Latitude 3340 Firmware | ||
Dell Latitude 3400 Firmware | <1.29.0 | |
Dell Latitude 3400 Firmware | ||
Dell Latitude 3430 Firmware | <1.12.0 | |
Dell Latitude 3430 Firmware | ||
Dell Latitude 3440 Firmware | <1.6.0 | |
Dell Latitude 3440 Firmware | ||
Dell Latitude 3500 Firmware | <1.29.0 | |
Dell Latitude 3500 Firmware | ||
Dell Latitude 3530 Firmware | <1.12.0 | |
Dell Latitude 3530 Firmware | ||
Dell Latitude 3540 Firmware | <1.6.0 | |
Dell Latitude 3540 Firmware | ||
Dell Latitude Rugged 5420 Firmware | <1.30.0 | |
Dell Latitude 5420 Firmware | ||
Dell Latitude 5430 Firmware | <1.15.0 | |
Dell Latitude 5430 Firmware | ||
Dell Latitude 5431 Firmware | <1.15.0 | |
Dell Latitude 5431 Firmware | ||
Dell Latitude 7230 Rugged Extreme Tablet Firmware | <1.8.0 | |
Dell Latitude 7230 Rugged Extreme | ||
Dell Latitude 7320 Detachable Firmware | <1.28.0 | |
Dell Latitude 7320 Firmware | ||
Dell Latitude 7420 Firmware | <1.28.0 | |
Dell Latitude 7420 Firmware | ||
Dell Latitude 7520 Firmware | <1.28.0 | |
Dell Latitude 7520 Firmware | ||
Dell Latitude 9330 Firmware | <1.13.0 | |
Dell Latitude 9330 Firmware | ||
Dell Latitude 9520 Firmware | <1.24.0 | |
Dell Latitude 9520 Firmware | ||
Dell Latitude 5430 Rugged Firmware | <1.20.0 | |
Dell Latitude 5430 Rugged Firmware | ||
Dell Latitude 7330 Rugged Firmware | <1.20.0 | |
Dell Latitude 7330 | ||
Dell OptiPlex 3000 Micro Firmware | <1.15.0 | |
Dell OptiPlex 3000 Thin | ||
Dell OptiPlex 3000 Thin Firmware | <1.11.0 | |
Dell OptiPlex 3000 Thin | ||
Dell OptiPlex 5000 Firmware | <1.15.0 | |
Dell OptiPlex 5000 | ||
Dell OptiPlex 5090 Tower Firmware | <1.19.0 | |
Dell OptiPlex 5090 Firmware | ||
Dell OptiPlex 5400 All-in-One Firmware | <1.1.30 | |
Dell OptiPlex 5400 All-in-One | ||
Dell OptiPlex 5490 AIO Firmware | <1.23.0 | |
Dell OptiPlex 5490 All-in-One Firmware | ||
Dell OptiPlex 7000 OEM Firmware | <1.15.0 | |
Dell OptiPlex 7000 Firmware | ||
Dell OptiPlex 7090 Firmware | <1.19.0 | |
Dell OptiPlex 7090 Tower | ||
Dell OptiPlex 7400 All-in-One Firmware | <1.1.30 | |
Dell OptiPlex 7400 All-in-One Firmware | ||
Dell OptiPlex 7490 AIO Firmware | <1.23.0 | |
Dell OptiPlex 7490 AIO | ||
Dell OptiPlex 7410 All-in-One Firmware | <1.6.0 | |
Dell OptiPlex 7410 All-in-One Firmware | ||
Dell OptiPlex Micro Plus 7010 | <1.6.0 | |
Dell OptiPlex Micro Plus 7010 Firmware | ||
Dell OptiPlex 7010 Small Form Factor Firmware | <1.6.0 | |
Dell OptiPlex 7010 Small Form Factor | ||
Dell OptiPlex Tower Plus 7010 | <1.6.0 | |
Dell OptiPlex Tower Plus 7010 Firmware | ||
Dell OptiPlex XE4 Tower Firmware | <1.15.0 | |
Dell OptiPlex XE4 OEM Ready | ||
Dell Precision 3260 XE Compact Firmware | <2.7.0 | |
Dell Precision 3260 XE Compact Firmware | ||
Dell Precision 3260 XE Compact Firmware | <2.7.0 | |
Dell Precision 3260 Compact Firmware | ||
Dell Precision 3450 Firmware | <1.19.0 | |
Dell Precision 3450 Firmware | ||
Dell Precision 3460 XE Small Form Factor | <2.7.0 | |
Dell Precision 3460 XE Small Form Factor Firmware | ||
Dell Precision 3460 XE Small Form Factor Firmware | <2.7.0 | |
Dell Precision 3460 Small Form Factor Firmware | ||
Dell Precision 3470 Firmware | <1.15.0 | |
Dell Precision 3470 | ||
Dell Precision 3650 MT Firmware | <1.24.0 | |
Dell Precision 3650 Tower Firmware | ||
Dell Precision 3660 Firmware | <2.7.0 | |
Dell Precision 3660 Firmware | ||
Dell Precision 5470 Firmware | <1.15.0 | |
Dell Precision 5470 Firmware | ||
Dell Precision 5570 Firmware | <1.16.0 | |
Dell Precision 5570 Firmware | ||
Dell Precision 5860 Tower Firmware | <1.0.10 | |
Dell Precision 5860 Tower Firmware | ||
Dell Precision 7960 Tower Firmware | <1.0.9 | |
Dell Precision 7960 Tower | ||
Dell Vostro 3020 T Firmware | <1.6.0 | |
Dell Vostro 3020 T | ||
Dell Vostro 3020 Tower Desktop Firmware | <1.6.0 | |
Dell Vostro 3020 Tower Desktop Firmware | ||
Dell Vostro 15 3510 Firmware | <1.23.0 | |
Dell Vostro 3510 Firmware | ||
Dell Vostro 3690 Firmware | <1.19.0 | |
Dell Vostro 3690 Firmware | ||
Dell Vostro 3710 Firmware | <1.15.0 | |
Dell Vostro 3710 Firmware | ||
Dell Vostro 3890 Firmware | <1.19.0 | |
Dell Vostro 3890 Firmware | ||
Dell Vostro 3910 Firmware | <1.15.0 | |
Dell Vostro 3910 Firmware | ||
Dell Vostro 14 5410 Firmware | <2.20.0 | |
Dell Vostro 14 5410 Firmware | ||
Dell Vostro 5491 Firmware | <1.27.0 | |
Dell Vostro 5491 Firmware | ||
Dell Vostro 5510 Firmware | <2.20.0 | |
Dell Vostro 5510 Firmware | ||
Dell Vostro 5591 Firmware | <1.27.0 | |
Dell Vostro 5591 Firmware | ||
Dell Vostro 5890 Firmware | <1.19.0 | |
Dell Vostro 5890 Firmware | ||
Dell Vostro 7500 Firmware | <1.24.0 | |
Dell Vostro 7500 Firmware | ||
Dell Vostro 15 7510 Firmware | <1.17.0 | |
Dell Vostro 15 7510 | ||
Dell XPS 13 9305 Firmware | <1.16.0 | |
Dell XPS 13 9305 Firmware | ||
Dell XPS 13 7390 Firmware | <1.21.0 | |
Dell XPS 7390 | ||
Dell XPS 7390 2-in-1 Firmware | <1.26.0 | |
Dell XPS 7390 | ||
Dell XPS 13 9300 Firmware | <1.19.0 | |
Dell XPS 13 9300 | ||
Dell XPS 13 9310 Firmware | <3.17.0 | |
Dell XPS 13 9310 Firmware | ||
Dell XPS 13 2-in-1 9310 Firmware | <2.19.0 | |
Dell XPS 13 9310 2-in-1 Firmware | ||
Dell XPS 13 9315 Firmware | <1.13.0 | |
Dell XPS 9315 2-in-1 | ||
Dell XPS 15 9520 Firmware | <1.16.0 | |
Dell XPS 15 9520 Firmware | ||
Dell Alienware m15 R7 AMD Firmware | <1.18.0 | |
Dell Alienware m16 firmware | ||
Dell Chengming 3977 Firmware | ||
Dell Chengming 3901 | <1.15.0 | |
Dell Chengming 3911 | <1.6.0 | |
Dell Chengming 3977 Firmware | ||
Dell G3 15 3500 firmware | <1.26.0 | |
Dell G3 15 3500 | ||
Dell G5 15 5500 Firmware | ||
Dell G7 17 7700 Firmware | ||
Dell Inspiron 14 5418 Firmware | <2.20.0 | |
Dell Inspiron 14 5418 Firmware | ||
Dell Inspiron 3511 Firmware | <1.23.0 | |
Dell Inspiron 15 3511 Firmware | ||
Dell Inspiron 15 5510 Firmware | ||
Dell Inspiron 15 5518 Firmware | ||
Dell Inspiron 24 5421 All-in-One | <1.4.0 | |
Dell Inspiron 24 5421 All-in-One Firmware | ||
Dell Inspiron 27 7720 All-in-One Firmware | ||
Dell Inspiron 3020 Small Desktop | ||
Dell Inspiron 15 3511 Firmware | <1.23.0 | |
Dell Inspiron 24 5410 All-in-One | ||
Dell Inspiron 16 7610 Firmware | ||
Dell OptiPlex 5000 Small Form Factor Firmware | <1.15.0 | |
Dell OptiPlex 7000 Small Form Factor | ||
Dell Optiplex 7090 Aio Firmware | <1.19.0 | |
Dell OptiPlex Tower 7010 | ||
Dell Vostro 3020 | ||
Dell XPS 13 Firmware | <1.21.0 | |
Dell XPS 13 | ||
Dell XPS 13 2-in-1 9310 Firmware | <3.17.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-32453 is categorized as high due to the potential for unauthorized modification of critical security settings by an attacker with physical access.
To fix CVE-2023-32453, update the BIOS firmware to the latest version provided by Dell as specified in their security advisory.
Affected systems include specific Dell Alienware, Chengming, G series, Inspiron, Latitude, and OptiPlex firmware versions prior to the given update thresholds.
No, CVE-2023-32453 requires physical access to the system for exploitation, making it a local vulnerability.
The risks associated with CVE-2023-32453 include unauthorized changes to UEFI variables, potentially leading to system compromise and instability.