VulnerabilityModified
CVE-2023-28064
Dell BIOS contains an Out-of-bounds Write vulnerability.
MEDIUM 4.6EPSS 0.26%
Does this matter?
Lower severity and a low EPSS score (0.26%). Track it; it rarely justifies an emergency change on its own.
Description
Dell BIOS contains an Out-of-bounds Write vulnerability. An unauthenticated physical attacker may potentially exploit this vulnerability, leading to denial of service.
- CVSS 3.1
- 4.6 MEDIUMCVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
- EPSS
- 0.26% probability · 18th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-787
- Affected
- dell/alienware m15 r6 firmware · dell/alienware m15 r7 firmware · dell/chengming 3900 firmware · dell/chengming 3901 firmware · dell/g15 5510 firmware · dell/g15 5511 firmware · dell/g15 5520 firmware · dell/inspiron 14 5418 firmware · dell/inspiron 14 5410 firmware · dell/inspiron 14 plus 7420 firmware · dell/inspiron 15 3511 firmware · dell/inspiron 15 5510 firmware · dell/inspiron 15 5518 firmware · dell/inspiron 16 7620 2-in-1 firmware · dell/inspiron 16 plus 7620 firmware · dell/inspiron 3511 firmware · dell/inspiron 3520 firmware · dell/inspiron 3891 firmware · dell/inspiron 3910 firmware · dell/inspiron 5310 firmware · +40 more
- Source
- security_alert@emc.com
References
- https://www.dell.com/support/kbdoc/en-us/000214778/dsa-2023-174-dell-client-bios-security-update-for-an-out-of-bounds-write-vulnerabilityVendor Advisory
- https://www.dell.com/support/kbdoc/en-us/000214778/dsa-2023-174-dell-client-bios-security-update-for-an-out-of-bounds-write-vulnerabilityVendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.