CVE-2020-5378
published 2020-09-02CVE-2020-5378: Dell G7 17 7790 BIOS versions prior to 1.13.2 contain a UEFI BIOS Boot Services overwrite vulnerability. A local attacker with access to system memory may…
medium6.8CVSS 3.1
AVPACLPRNUINSUCHIHAH
Dell G7 17 7790 BIOS versions prior to 1.13.2 contain a UEFI BIOS Boot Services overwrite vulnerability. A local attacker with access to system memory may exploit this vulnerability by overwriting the EFI_BOOT_SERVICES structure to execute arbitrary code in System Management Mode (SMM).
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| dell | cpg_bios | >= unspecified < 1.13.0 | 1.13.0 |
| dell | g7_17_7790_bios | < 1.13.2 | 1.13.2 |