ZeroHour

CVE-2022-34398

CVSS 3.1
7.0 high
EPSS
<1%p5
Published
()
Modified
Description

Dell BIOS contains a Time-of-check Time-of-use vulnerability. A local authenticated malicious user could\u00a0potentially exploit this vulnerability by using a specifically timed DMA transaction during an SMI to gain arbitrary code execution on the system.

Vendors
dell
Products
alienware area 51m r1 firmware, alienware area 51m r2 firmware, alienware aurora r10 firmware, alienware aurora r11 firmware, alienware aurora r12 firmware, alienware aurora r13 firmware, alienware aurora r8 firmware, alienware aurora r9 firmware, alienware m15 r1 firmware, alienware m15 r2 firmware, alienware m15 r3 firmware, alienware m15 r4 firmware
Weakness
CWE-367
Vector
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.