CVE-2020-5388

Severity CVSS v4.0:
Pending analysis
Type:
CWE-119 Buffer Errors
Publication date:
10/11/2020
Last modified:
24/11/2020

Description

Dell Inspiron 15 7579 2-in-1 BIOS versions prior to 1.31.0 contain an Improper SMM communication buffer verification vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:dell:inspiron_15_7579_firmware:*:*:*:*:*:*:*:* 1.31.0 (excluding)
cpe:2.3:h:dell:inspiron_15_7579:-:*:*:*:*:*:*:*