First published: Fri Nov 22 2024(Updated: )
Dell Edge Gateway 3200, versions prior to 15.40.30.2879, and Edge Gateway 5200, versions prior to 12.0.94.2380, contain an Exposure of Sensitive Information in Shared Microarchitectural Structures during Transient Execution vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to information exposure.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell Edge Gateway 3200 firmware | <15.40.30.2879 | |
Dell Edge Gateway 5200 firmware | <12.0.94.2380 | |
All of | ||
Dell Intel Management Engine Firmware Update Utility | <15.40.30.2879 | |
Dell Edge Gateway 3200 firmware | ||
All of | ||
Dell Intel Management Engine Firmware Update Utility | <12.0.94.2380 | |
Dell Edge Gateway 5200 firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-38296 has a high severity rating due to the potential for sensitive information to be exposed by a high privileged attacker.
To remediate CVE-2024-38296, upgrade the Dell Edge Gateway 3200 to version 15.40.30.2879 or the Edge Gateway 5200 to version 12.0.94.2380.
CVE-2024-38296 affects Dell Edge Gateway 3200 versions prior to 15.40.30.2879 and Edge Gateway 5200 versions prior to 12.0.94.2380.
High privileged attackers with local access to the affected Dell Edge Gateway devices are at risk of exploiting CVE-2024-38296.
Additional information about CVE-2024-38296 can be found in the security advisory and documentation provided by Dell.