CVE-2020-26186
published 2021-01-08CVE-2020-26186: Dell Inspiron 5675 BIOS versions prior to 1.4.1 contain a UEFI BIOS RuntimeServices overwrite vulnerability. A local attacker with access to system memory may…
medium6.8CVSS 3.1
AVPACLPRNUINSUCHIHAH
Dell Inspiron 5675 BIOS versions prior to 1.4.1 contain a UEFI BIOS RuntimeServices overwrite vulnerability. A local attacker with access to system memory may exploit this vulnerability by overwriting the RuntimeServices structure to execute arbitrary code in System Management Mode (SMM).
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| dell | cpg_bios | >= unspecified < 1.4.1 | 1.4.1 |
| dell | inspiron_5675_firmware | < 1.4.1 | 1.4.1 |