cbcvebase.
CVE-2020-5378
published 2020-09-02

CVE-2020-5378: Dell G7 17 7790 BIOS versions prior to 1.13.2 contain a UEFI BIOS Boot Services overwrite vulnerability. A local attacker with access to system memory may…

medium6.8CVSS 3.1
AVPACLPRNUINSUCHIHAH
Dell G7 17 7790 BIOS versions prior to 1.13.2 contain a UEFI BIOS Boot Services overwrite vulnerability. A local attacker with access to system memory may exploit this vulnerability by overwriting the EFI_BOOT_SERVICES structure to execute arbitrary code in System Management Mode (SMM).

Affected

2 ranges
VendorProductVersion rangeFixed in
dellcpg_bios>= unspecified < 1.13.01.13.0
dellg7_17_7790_bios< 1.13.21.13.2