CVE-2023-32466: Medium severity dell edge gateway 3200 firmware vulnerability
Dell Edge Gateway BIOS, versions 3200 and 5200, contains an out-of-bounds write vulnerability. A local authenticated malicious user with high privileges could potentially exploit this vulnerability leading to exposure of some UEFI code, leading to arbitrary code execution or escalation of privilege.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-32466?
CVE-2023-32466 is classified as a high-severity vulnerability due to its potential for arbitrary code execution and privilege escalation.
How do I fix CVE-2023-32466?
To fix CVE-2023-32466, update the Dell Edge Gateway BIOS to the latest version that addresses this vulnerability.
Who is affected by CVE-2023-32466?
CVE-2023-32466 affects local authenticated users with high privileges on Dell Edge Gateway 3200 and 5200 BIOS versions below 1.03.10.
What can happen if CVE-2023-32466 is exploited?
If exploited, CVE-2023-32466 can lead to exposure of sensitive UEFI code, arbitrary code execution, or privilege escalation.
Is there a workaround for CVE-2023-32466?
Currently, there are no documented workarounds for CVE-2023-32466; updating the firmware is the recommended action.