CVE-2023-25537

CVSS V2 None CVSS V3 None
Description
Dell PowerEdge 14G server BIOS versions prior to 2.18.1 and Dell Precision BIOS versions prior to 2.18.2, contain an Out of Bounds write vulnerability. A local attacker with low privileges could potentially exploit this vulnerability leading to exposure of some SMRAM stack/data/code in System Management Mode, leading to arbitrary code execution or escalation of privilege.
Overview
  • CVE ID
  • CVE-2023-25537
  • Assigner
  • security_alert@emc.com
  • Vulnerability Status
  • Received
  • Published Version
  • 2023-05-22T11:15:09
  • Last Modified Date
  • 2023-05-22T11:15:09
History
Created Old Value New Value Data Type Notes
2023-05-22 12:00:38 Added to TrackCVE
2023-05-22 12:00:40 Weakness Enumeration new