CVE-2023-28074Out-of-bounds Read in Dell Bsafe Micro-edition-suite

Severity
7.1HIGHNVD
CNA6.2
EPSS
0.1%
top 83.62%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 31

Description

Dell BSAFE Crypto-C Micro Edition, version 4.1.5, and Dell BSAFE Micro Edition Suite, versions 4.0 through 4.6.1 and version 5.0, contains an Out-of-bounds Read vulnerability. An unauthenticated attacker with local access could potentially exploit this vulnerability, leading to Information exposure.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:HExploitability: 1.8 | Impact: 5.2

Affected Packages4 packages

NVDdell/bsafe_micro-edition-suite4.0.04.6.2+1
CVEListV5dell/dell_bsafe_micro_edition_suite4.04.6.1+1

🔴Vulnerability Details

2
GHSA
GHSA-75g8-qq4f-vwx8: Dell BSAFE Crypto-C Micro Edition 42024-07-31
CVEList
CVE-2023-28074: Dell BSAFE Crypto-C Micro Edition, version 42024-07-31
CVE-2023-28074 — Out-of-bounds Read in Dell | cvebase