ZeroHour

CVE-2021-21556

CVSS 3.1
6.7 medium
EPSS
<1%p23
Published
()
Modified
Description

Dell PowerEdge R640, R740, R740XD, R840, R940, R940xa, MX740c, MX840c, and T640 Server BIOS contain a stack-based buffer overflow vulnerability in systems with NVDIMM-N installed. A local malicious user with high privileges may potentially exploit this vulnerability, leading to a denial of Service, arbitrary code execution, or information disclosure in UEFI or BIOS Preboot Environment.

Vendors
dell
Products
poweredge r640 firmware, poweredge r740 firmware, poweredge r740xd firmware, poweredge r940 firmware, poweredge r840 firmware, poweredge r940xa firmware, poweredge t640 firmware, poweredge mx740c firmware, poweredge mx840c firmware
Weakness
CWE-121, CWE-787
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.