CVE-2022-34398
published 2023-02-01CVE-2022-34398: Dell BIOS contains a Time-of-check Time-of-use vulnerability. A local authenticated malicious user could\u00a0potentially exploit this vulnerability by using a…
high7CVSS 3.1
AVLACHPRLUINSUCHIHAH
Dell BIOS contains a Time-of-check Time-of-use vulnerability. A local authenticated malicious user could\u00a0potentially exploit this vulnerability by using a specifically timed DMA transaction during an SMI to gain arbitrary code execution on the system.
Affected
242 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| dell | alienware_area_51m_r1_firmware | < 1.22.2 | 1.22.2 |
| dell | alienware_area_51m_r2_firmware | < 1.19.0 | 1.19.0 |
| dell | alienware_aurora_r10_firmware | < 2.3.2 | 2.3.2 |
| dell | alienware_aurora_r11_firmware | < 1.0.17 | 1.0.17 |
| dell | alienware_aurora_r12_firmware | < 1.1.17 | 1.1.17 |
| dell | alienware_aurora_r13_firmware | < 1.7.0 | 1.7.0 |
| dell | alienware_aurora_r8_firmware | < 1.0.26 | 1.0.26 |
| dell | alienware_aurora_r9_firmware | < 1.0.22 | 1.0.22 |
| dell | alienware_m15_r1_firmware | < 2.15.0 | 2.15.0 |
| dell | alienware_m15_r2_firmware | < 1.18.3 | 1.18.3 |
| dell | alienware_m15_r3_firmware | < 1.20.0 | 1.20.0 |
| dell | alienware_m15_r4_firmware | < 1.14.0 | 1.14.0 |
| dell | alienware_m17_r1_firmware | < 2.15.0 | 2.15.0 |
| dell | alienware_m17_r2_firmware | < 1.18.3 | 1.18.3 |
| dell | alienware_m17_r3_firmware | < 1.20.0 | 1.20.0 |
| dell | alienware_m17_r4_firmware | < 1.14.0 | 1.14.0 |
| dell | alienware_x14_firmware | < 1.7.0 | 1.7.0 |
| dell | alienware_x15_r1_firmware | < 1.14.0 | 1.14.0 |
| dell | alienware_x15_r2_firmware | < 1.8.2 | 1.8.2 |
| dell | alienware_x17_r1_firmware | < 1.14.0 | 1.14.0 |
| dell | alienware_x17_r2_firmware | < 1.8.2 | 1.8.2 |
| dell | aurora_r14_firmware | < 2.5.0 | 2.5.0 |
| dell | chengming_3980_firmware | < 2.26.0 | 2.26.0 |
| dell | chengming_3988_firmware | < 1.13.0 | 1.13.0 |
| dell | chengming_3990_firmware | < 1.16.2 | 1.16.2 |