CVE-2022-34398
—CVSS 3.1
7.0 high
EPSS
<1%p5
Published
()
Modified
Description
Dell BIOS contains a Time-of-check Time-of-use vulnerability. A local authenticated malicious user could\u00a0potentially exploit this vulnerability by using a specifically timed DMA transaction during an SMI to gain arbitrary code execution on the system.
- Vendors
- dell
- Products
- alienware area 51m r1 firmware, alienware area 51m r2 firmware, alienware aurora r10 firmware, alienware aurora r11 firmware, alienware aurora r12 firmware, alienware aurora r13 firmware, alienware aurora r8 firmware, alienware aurora r9 firmware, alienware m15 r1 firmware, alienware m15 r2 firmware, alienware m15 r3 firmware, alienware m15 r4 firmware
- Weakness
- CWE-367
- Vector
- CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.