7.6
CWE
353
Advisory Published
Updated

CVE-2023-32475

First published: Fri Jun 07 2024(Updated: )

Dell BIOS contains a missing support for integrity check vulnerability. An attacker with physical access to the system could potentially bypass security mechanisms to run arbitrary code on the system.

Credit: security_alert@emc.com

Affected SoftwareAffected VersionHow to fix
All of
Dell Vostro 5625 Firmware<1.13.0
Dell Vostro 5625
All of
Dell Vostro 5515<1.19.0
Dell Vostro 5515 Firmware
All of
Dell Vostro 5415 Firmware<1.19.0
Dell Vostro 5415 Firmware
All of
Dell Vostro 3405 Firmware<1.16.0
Dell Vostro 3405 Firmware
All of
Dell Vostro 16 5635 Firmware<1.8.0
Dell Vostro 16 5635 Firmware
All of
Dell Vostro 15 3535 Firmware<1.12.0
Dell Vostro 15 3535 Firmware
All of
Dell Vostro 15 3525 Firmware<1.15.1
Dell Vostro 3525
All of
Dell Vostro 3515 Firmware<1.16.0
Dell Vostro 15 3515 Firmware
All of
Dell Vostro 14 3435 Firmware<1.12.0
Dell Vostro 14 3435 Firmware
All of
Dell Vostro 3425 Firmware<1.15.1
Dell Vostro 3425
All of
Dell Inspiron 7415 Firmware<1.19.0
Dell Inspiron 7415 2-in-1 firmware
All of
Dell Inspiron 7405 2-in-1 firmware<1.15.0
Dell Inspiron 7405
All of
Dell Inspiron 5515 Firmware<1.19.0
Dell Inspiron 5515 Firmware
All of
Dell Inspiron 5505 Firmware<1.14.0
Dell Inspiron 5505
All of
Dell Inspiron 5415 Firmware<1.19.0
Dell Inspiron 5415 Firmware
All of
Dell Inspiron 5405 Firmware<1.14.0
Dell Inspiron 5405
All of
Dell Inspiron 3505 Firmware<1.16.0
Dell Inspiron 3505
All of
Dell Inspiron 5415 All-in-One Firmware<1.17.0
Dell Inspiron 24 5415 All-in-One
All of
Dell Inspiron 16 7635 2-in-1 firmware<1.8.0
Dell Inspiron 16 7635 2-in-1 firmware
All of
Dell Inspiron 16 5635 firmware<1.8.0
Dell Inspiron 16 5635 firmware
All of
Dell Inspiron 16 5625 firmware<1.13.0
Dell Inspiron 16 5625
All of
Dell Inspiron 15 3535 Firmware<1.12.0
Dell Inspiron 15 3535 Firmware
All of
Dell Inspiron 15 3525 Firmware<1.15.1
Dell Inspiron 3525
All of
Dell Inspiron 3515 Firmware<1.16.0
Dell Inspiron 15 3515
All of
Dell Inspiron 14 7435 2-in-1 firmware<1.8.0
Dell Inspiron 14 7435 2-in-1 firmware
All of
Dell Inspiron 14 7425 2-in-1 firmware<1.13.0
Dell Inspiron 7425
All of
Dell Inspiron 14 5435 Firmware<1.8.0
Dell Inspiron 14 5435 Firmware
All of
Dell Inspiron 5425 Firmware<1.13.0
Dell Inspiron 5425 Firmware
All of
Dell G5 SE 5505 Firmware<1.18.0
Dell G5 SE 5505
All of
Dell G15 5535<1.5.0
Dell G15 5535
All of
Dell G15 5525<1.15.0
Dell G15 5525 Firmware
All of
Dell G15 5515 Firmware<1.15.0
Dell G15 5515 Firmware
All of
Dell Alienware m18 Firmware<1.9.0
Dell Alienware m18
All of
Dell Alienware m17 R5<1.15.0
Dell Alienware m17 R5
All of
Dell Alienware m16 firmware<1.9.0
Dell Alienware m16
All of
Dell Alienware m15 Ryzen Edition R5<1.16.0
Dell Alienware m15 Ryzen Edition R5
All of
Dell Alienware m15 R7 Firmware<1.15.0
Dell Alienware m15 R7 Firmware
All of
Dell Alienware Aurora Ryzen Edition Firmware<2.16.0
Dell Alienware Aurora Ryzen Edition R14 Firmware
All of
Dell Alienware Aurora R15<1.13.0
Dell Alienware Aurora R15
All of
Dell Alienware Aurora R10 Firmware<2.6.0
Dell Alienware Aurora R10 Firmware

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Frequently Asked Questions

  • What is the severity of CVE-2023-32475?

    CVE-2023-32475 has been classified as a critical vulnerability due to the potential for arbitrary code execution with physical access.

  • How do I fix CVE-2023-32475?

    To mitigate CVE-2023-32475, update the BIOS firmware for affected Dell Vostro and Inspiron models to the latest version provided by Dell.

  • What types of devices are affected by CVE-2023-32475?

    CVE-2023-32475 affects various Dell Vostro and Inspiron models, primarily those with specific firmware versions.

  • Can CVE-2023-32475 be exploited remotely?

    No, CVE-2023-32475 requires physical access to the device for exploitation.

  • What potential impact does CVE-2023-32475 have on systems?

    CVE-2023-32475 could allow an attacker to bypass security mechanisms and execute arbitrary code on the affected system.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203