CVE-2020-5388
Severity CVSS v4.0:
Pending analysis
Type:
CWE-119
Buffer Errors
Publication date:
10/11/2020
Last modified:
24/11/2020
Description
Dell Inspiron 15 7579 2-in-1 BIOS versions prior to 1.31.0 contain an Improper SMM communication buffer verification vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM.
Impact
Base Score 3.x
6.90
Severity 3.x
MEDIUM
Base Score 2.0
4.40
Severity 2.0
MEDIUM
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:o:dell:inspiron_15_7579_firmware:*:*:*:*:*:*:*:* | 1.31.0 (excluding) | |
cpe:2.3:h:dell:inspiron_15_7579:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page