Description


Dell BIOS contain a Time-of-check Time-of-use vulnerability in BIOS. A local authenticated malicious user with physical access to the system could potentially exploit this vulnerability by using a specifically timed DMA transaction during an SMI in order to gain arbitrary code execution on the system.

Related CPE's










































o

dell

precision_5820_tower_firmware

2

h

dell

precision_5820_tower

2

o

dell

precision_7820_tower_firmware

2

h

dell

precision_7820_tower

2

o

dell

precision_7920_tower_firmware

2

h

dell

precision_7920_tower

2






















































































































































































































































































































































































































































Weaknesses



CWE-367

CVSS impact metrics


CVSS:3.1/AV:P/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

6.3 · Medium

  • CVSS V3.1

  • CVSS V3.0

  • CVSS V2.0

Information


Source identifier

[email protected]

Vulnerability status

Analyzed

Published

2023-08-16T20:15:09.427

11 months ago

Last modified

2023-08-22T22:11:00.903

11 months ago