Medium
Proprietary Code CVEs | Description | CVSS Base Score | CVSS Vector String |
---|---|---|---|
CVE-2024-0162 | Dell PowerEdge Server BIOS and Dell Precision Rack BIOS contain an Improper SMM communication buffer verification vulnerability. A local low privileged attacker could potentially exploit this vulnerability leading to out-of-bound read/writes to SMRAM. | 5.3 | CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:L/I:L/A:L |
Proprietary Code CVEs | Description | CVSS Base Score | CVSS Vector String |
---|---|---|---|
CVE-2024-0162 | Dell PowerEdge Server BIOS and Dell Precision Rack BIOS contain an Improper SMM communication buffer verification vulnerability. A local low privileged attacker could potentially exploit this vulnerability leading to out-of-bound read/writes to SMRAM. | 5.3 | CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:L/I:L/A:L |
Due to updates to address a functional issue, the previous BIOS version 1.7.6 for 16G E5 platforms was replaced by 1.8.0. Dell recommends all customers update to BIOS version 1.8.0.
The Affected Products and Remediation table above may not be a comprehensive list of all affected supported versions and may be updated as more information becomes available.
None
Revision | Date | Description |
---|---|---|
1.0 | 2024-03-12 | Initial release |
2.0 | 2024-03-13 | Updated the CVE description to add "Dell Precision Rack BIOS" |
3.0 | 2024-03-26 | Updated release versions for 16G platforms due to BIOS re-spin. Updated the wordings "Due to updates to address a functional issue, the previous BIOS version 1.7.6 for 16G E5 platforms was replaced by 1.8.0. Dell recommends all customers update to BIOS version 1.8.0." under the Additional Information section. |
4.0 | 2024-06-13 | Updated for enhanced presentation with no changes to content. |