CVE-2013-3582

Severity CVSS v4.0:
Pending analysis
Type:
CWE-119 Buffer Errors
Publication date:
28/08/2013
Last modified:
11/04/2025

Description

Buffer overflow in Dell BIOS on Dell Latitude D###, E####, XT2, and Z600 devices, and Dell Precision M#### devices, allows local users to bypass intended BIOS signing requirements and install arbitrary BIOS images by leveraging administrative privileges and providing a crafted rbu_packet.pktNum value in conjunction with a crafted rbu_packet.pktSize value.

Vulnerable products and versions

CPE From Up to
cpe:2.3:h:dell:latitude_d530:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_d531:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_d630:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_d631:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_d830:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_e4200:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_e4300:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_e5400:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_e5500:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_e6400:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_e6400_atg:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_e6400_atg_xfr:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_e6500:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_xt2:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:latitude_z600:-:*:*:*:*:*:*:*