CVE-2022-34405

An improper access control vulnerability was identified in the Realtek audio driver. A local authenticated malicious user may potentially exploit this vulnerability by waiting for an administrator to launch the application and attach to the process to elevate privileges on the system.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:dell:realtek_high_definition_audio_driver:*:*:*:*:*:*:*:*
OR cpe:2.3:h:dell:alienware_m15_ryzen_edition_r5:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:g15_5515:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:a:dell:realtek_high_definition_audio_driver:*:*:*:*:*:*:*:*
OR cpe:2.3:h:dell:alienware_m15_r6:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:g15_5510:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:g15_5511:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:a:dell:realtek_high_definition_audio_driver:*:*:*:*:*:*:*:*
OR cpe:2.3:h:dell:alienware_area_51m_r1:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:alienware_area_51m_r2:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:alienware_aurora_r10:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:alienware_aurora_r11:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:alienware_aurora_r12:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:alienware_aurora_r8:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:alienware_aurora_r9:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:alienware_m15_r1:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:alienware_m15_r2:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:alienware_m15_r3:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:alienware_m15_r4:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:alienware_m17_r1:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:alienware_m17_r2:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:alienware_m17_r3:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:alienware_m17_r4:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:g5_5000:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:g5_5090:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:g5_5590:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:g7_7590:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:g7_7790:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:a:dell:realtek_high_definition_audio_driver:*:*:*:*:*:*:*:*
OR cpe:2.3:h:dell:g7_7500:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:g7_7700:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:a:dell:realtek_high_definition_audio_driver:*:*:*:*:*:*:*:*
OR cpe:2.3:h:dell:alienware_aurora_r13:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:alienware_x15_r1:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:alienware_x17_r1:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:a:dell:realtek_high_definition_audio_driver:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:g3_3590:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:a:dell:realtek_high_definition_audio_driver:*:*:*:*:*:*:*:*
OR cpe:2.3:h:dell:g3_3500:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:g5_5500:-:*:*:*:*:*:*:*

History

07 Nov 2023, 03:48

Type Values Removed Values Added
Summary An improper access control vulnerability was identified in the Realtek audio driver. A local authenticated malicious user may potentially exploit this vulnerability by waiting for an administrator to launch the application and attach to the process to elevate privileges on the system. An improper access control vulnerability was identified in the Realtek audio driver. A local authenticated malicious user may potentially exploit this vulnerability by waiting for an administrator to launch the application and attach to the process to elevate privileges on the system.

21 Jul 2023, 18:49

Type Values Removed Values Added
CWE CWE-668 NVD-CWE-Other

Information

Published : 2023-01-26 21:15

Updated : 2024-02-28 19:51


NVD link : CVE-2022-34405

Mitre link : CVE-2022-34405

CVE.ORG link : CVE-2022-34405


JSON object : View

Products Affected

dell

  • alienware_area_51m_r1
  • g5_5500
  • alienware_aurora_r12
  • alienware_aurora_r10
  • alienware_aurora_r11
  • alienware_x15_r1
  • g15_5510
  • alienware_m17_r2
  • g15_5515
  • alienware_m17_r3
  • alienware_m15_r1
  • alienware_m15_r2
  • alienware_area_51m_r2
  • alienware_m15_ryzen_edition_r5
  • g15_5511
  • alienware_m15_r6
  • g5_5000
  • g5_5090
  • alienware_m15_r4
  • alienware_aurora_r8
  • g3_3500
  • g7_7790
  • g7_7500
  • alienware_m17_r1
  • realtek_high_definition_audio_driver
  • alienware_aurora_r9
  • alienware_m15_r3
  • g7_7700
  • alienware_aurora_r13
  • g3_3590
  • g5_5590
  • alienware_x17_r1
  • alienware_m17_r4
  • g7_7590
CWE
NVD-CWE-Other CWE-285

Improper Authorization