First published: Wed Jun 12 2024(Updated: )
Dell Client BIOS contains an Out-of-bounds Write vulnerability. A local authenticated malicious user with admin privileges could potentially exploit this vulnerability, leading to platform denial of service.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Dell Vostro 5502 Firmware | <1.30.0 | |
Dell Vostro 5502 Firmware | ||
All of | ||
Dell Vostro 5402 Firmware | <1.30.0 | |
Dell Vostro 5402 Firmware | ||
All of | ||
Dell Precision 3660 Firmware | <2.14.0 | |
Dell Precision 3660 Firmware | ||
All of | ||
Dell Inspiron 5509 Firmware | <1.30.0 | |
Dell Inspiron 5509 | ||
All of | ||
Dell Inspiron 5502 Firmware | <1.30.0 | |
Dell Inspiron 5502 Firmware | ||
All of | ||
Dell Inspiron 5409 Firmware | <1.30.0 | |
Dell Inspiron 5409 Firmware | ||
All of | ||
Dell Inspiron 5402 Firmware | <1.30.0 | |
Dell Inspiron 5402 | ||
All of | ||
Dell Inspiron 27 7720 All-in-One Firmware | <1.11.0 | |
Dell Inspiron 27 7720 All-in-One | ||
All of | ||
Dell Inspiron 24 5420 All-in-One Firmware | <1.11.0 | |
Dell Inspiron 24 5420 All-in-One Firmware | ||
All of | ||
Dell Inspiron 16 Plus 7640 Firmware | <1.6.0 | |
Dell Inspiron 16 Plus 7640 Firmware | ||
All of | ||
Dell Inspiron 16 7640 2-in-1 firmware | <1.4.0 | |
Dell Inspiron 16 7640 2-in-1 firmware | ||
All of | ||
Dell Inspiron 14 Plus 7440 Firmware | <1.6.0 | |
Dell Inspiron 14 Plus 7440 Firmware | ||
All of | ||
Dell G7 17 7700 Firmware | <1.32.0 | |
Dell G7 17 7700 | ||
All of | ||
Dell G7 15 7500 Firmware | <1.32.0 | |
Dell G7 15 7500 Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-28970 is considered a high severity vulnerability due to its potential for causing platform denial of service.
To fix CVE-2024-28970, update the Dell Client BIOS to the latest version available that addresses this vulnerability.
CVE-2024-28970 can be exploited by a local authenticated malicious user with admin privileges.
CVE-2024-28970 affects various Dell models including the Vostro, Inspiron, Precision, and G7 series with specific firmware versions.
The impact of CVE-2024-28970 can lead to a platform denial of service, affecting the normal operation of the system.