Skip to main content
  • Place orders quickly and easily
  • View orders and track your shipping status
  • Enjoy members-only rewards and discounts
  • Create and access a list of your products
  • Manage your Dell EMC sites, products, and product-level contacts using Company Administration.

Article Number: 000180504


DSA-2020-215: Dell Inspiron 15 7579 2-in-1 Improper SMM Communication Buffer Boundary Verification Vulnerability

Summary: Dell Inspiron 15 7579 2-in-1 has been updated to address an Improper SMM Communication Buffer Boundary Verification Vulnerability.

Article Content


Impact

Medium

Details

Dell Inspiron 15 7579 2-in-1 BIOS versions prior to 1.31.0 contain an Improper SMM communication buffer verification vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM.

Inspiron 15 7579 2-in-1

The following Dell Inspiron 15 7579 2-in-1 BIOS release contains the resolution to this vulnerability as indicated in the table below.

Customers should use the latest release available from Dell support when updating their systems.

Please visit the Drivers and Downloads site for updates on the applicable products. To learn more, visit the Dell Knowledge Base article Dell BIOS Updates, and download the update for your Dell computer.

SLN322869_en_US__1icon Notes:
  • Prior to installing the update, please ensure Windows Updates are up to date.
  • Update versions in the table below are the first releases with the updates to address the security vulnerabilities. Releases at and above these versions will include the security updates.

Dell Inspiron 15 7579 2-in-1 BIOS versions prior to 1.31.0 contain an Improper SMM communication buffer verification vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM.

Inspiron 15 7579 2-in-1

The following Dell Inspiron 15 7579 2-in-1 BIOS release contains the resolution to this vulnerability as indicated in the table below.

Customers should use the latest release available from Dell support when updating their systems.

Please visit the Drivers and Downloads site for updates on the applicable products. To learn more, visit the Dell Knowledge Base article Dell BIOS Updates, and download the update for your Dell computer.

SLN322869_en_US__1icon Notes:
  • Prior to installing the update, please ensure Windows Updates are up to date.
  • Update versions in the table below are the first releases with the updates to address the security vulnerabilities. Releases at and above these versions will include the security updates.
Dell Technologies recommends all customers consider both the CVSS base score and any relevant temporal and environmental scores that may impact the potential severity associated with a particular security vulnerability.

Affected Products and Remediation

Product

Update BIOS Version
(or greater)

Release Date (MM/DD/YYYY)

Inspiron 15 7579 2-in-1

1.31.0

9/21/2020

Dell recommends all customers upgrade at the earliest opportunity.

 

Product

Update BIOS Version
(or greater)

Release Date (MM/DD/YYYY)

Inspiron 15 7579 2-in-1

1.31.0

9/21/2020

Dell recommends all customers upgrade at the earliest opportunity.

 

Workarounds and Mitigations

None.

Acknowledgements

Dell would like to thank Nicholas Armour from Intel for reporting this vulnerability.

Revision History

Revision

Date

Description

2.0

2020-12-09

Changed article type from Solution to DSA

Related Information


Article Properties


Product

Inspiron 15 7579 2-in-1

Last Published Date

22 May 2021

Article Type

Dell Security Advisory