CVE-2022-22558

Severity CVSS v4.0:
Pending analysis
Type:
CWE-119 Buffer Errors
Publication date:
21/04/2022
Last modified:
01/09/2022

Description

Dell PowerEdge Server BIOS and Dell Precision Workstation 7910 and 7920 Rack BIOS contain an Improper SMM communication buffer verification vulnerability. A Local High Privileged attacker could potentially exploit this vulnerability leading to arbitrary writes or denial of service.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:dell:r6415_firmware:*:*:*:*:*:*:*:* 1.18.0 (excluding)
cpe:2.3:h:dell:r6415:-:*:*:*:*:*:*:*
cpe:2.3:o:dell:r7415_firmware:*:*:*:*:*:*:*:* 1.18.0 (excluding)
cpe:2.3:h:dell:r7415:-:*:*:*:*:*:*:*
cpe:2.3:o:dell:r7425_firmware:*:*:*:*:*:*:*:* 1.18.0 (excluding)
cpe:2.3:h:dell:r7425:-:*:*:*:*:*:*:*
cpe:2.3:o:dell:r730_firmware:*:*:*:*:*:*:*:* 2.14.0 (excluding)
cpe:2.3:h:dell:r730:-:*:*:*:*:*:*:*
cpe:2.3:o:dell:r730xd_firmware:*:*:*:*:*:*:*:* 2.14.0 (excluding)
cpe:2.3:h:dell:r730xd:-:*:*:*:*:*:*:*
cpe:2.3:o:dell:r630_firmware:*:*:*:*:*:*:*:* 2.14.0 (excluding)
cpe:2.3:h:dell:r630:-:*:*:*:*:*:*:*
cpe:2.3:o:dell:c4130_firmware:*:*:*:*:*:*:*:* 2.14.0 (excluding)
cpe:2.3:h:dell:c4130:-:*:*:*:*:*:*:*
cpe:2.3:o:dell:m630_firmware:*:*:*:*:*:*:*:* 2.14.0 (excluding)


References to Advisories, Solutions, and Tools