Dell Edge Gateway BIOS, versions 3200 and 5200, contains an out-of-bounds read vulnerability. A local authenticated malicious user with high privileges could potentially exploit this vulnerability to read contents of stack memory and use this information for further exploits.
References
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
Configuration 5 (hide)
AND |
|
Configuration 6 (hide)
AND |
|
Configuration 7 (hide)
AND |
|
Configuration 8 (hide)
AND |
|
Configuration 9 (hide)
AND |
|
Configuration 10 (hide)
AND |
|
History
11 Sep 2024, 13:50
Type | Values Removed | Values Added |
---|---|---|
References | () https://www.dell.com/support/kbdoc/en-us/000214917/dsa-2023-225-security-update-for-dell-bios-edge-gateway-5200-and-edge-gateway-3200 - Vendor Advisory | |
CPE | cpe:2.3:o:dell:edge_gateway_3200_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:dell:precision_5820_tower_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:dell:g7_7588:-:*:*:*:*:*:*:* cpe:2.3:h:dell:inspiron_7460:-:*:*:*:*:*:*:* cpe:2.3:o:dell:optiplex_7080_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:dell:optiplex_7080:-:*:*:*:*:*:*:* cpe:2.3:h:dell:vostro_15_7580:-:*:*:*:*:*:*:* cpe:2.3:h:dell:precision_3930_rack:-:*:*:*:*:*:*:* cpe:2.3:h:dell:edge_gateway_5200:-:*:*:*:*:*:*:* cpe:2.3:o:dell:edge_gateway_5200_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:dell:g7_7588_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:dell:precision_3930_rack_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:dell:inspiron_7460_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:dell:g5_5587_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:dell:g5_5587:-:*:*:*:*:*:*:* cpe:2.3:h:dell:precision_5520:-:*:*:*:*:*:*:* cpe:2.3:h:dell:precision_5820_tower:-:*:*:*:*:*:*:* cpe:2.3:o:dell:precision_5520_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:dell:vostro_15_7580_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:dell:edge_gateway_3200:-:*:*:*:*:*:*:* |
|
First Time |
Dell g5 5587 Firmware
Dell vostro 15 7580 Firmware Dell edge Gateway 3200 Firmware Dell edge Gateway 3200 Dell precision 5820 Tower Firmware Dell precision 5520 Dell precision 5520 Firmware Dell precision 3930 Rack Firmware Dell inspiron 7460 Firmware Dell g7 7588 Dell g5 5587 Dell precision 5820 Tower Dell precision 3930 Rack Dell g7 7588 Firmware Dell optiplex 7080 Dell edge Gateway 5200 Firmware Dell inspiron 7460 Dell optiplex 7080 Firmware Dell vostro 15 7580 Dell edge Gateway 5200 Dell |
24 Jul 2024, 12:55
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
24 Jul 2024, 08:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-07-24 08:15
Updated : 2024-09-11 13:50
NVD link : CVE-2023-32471
Mitre link : CVE-2023-32471
CVE.ORG link : CVE-2023-32471
JSON object : View
Products Affected
dell
- edge_gateway_5200
- edge_gateway_5200_firmware
- precision_3930_rack
- edge_gateway_3200_firmware
- precision_5520_firmware
- g5_5587_firmware
- inspiron_7460_firmware
- g5_5587
- g7_7588_firmware
- vostro_15_7580_firmware
- edge_gateway_3200
- g7_7588
- precision_3930_rack_firmware
- optiplex_7080
- precision_5820_tower
- precision_5520
- optiplex_7080_firmware
- vostro_15_7580
- inspiron_7460
- precision_5820_tower_firmware
CWE
CWE-125
Out-of-bounds Read