CVE-2021-21573
24.06.2021, 17:15
Dell BIOSConnect feature contains a buffer overflow vulnerability. An authenticated malicious admin user with local access to the system may potentially exploit this vulnerability to run arbitrary code and bypass UEFI restrictions.Enginsight
Vendor | Product | Version |
---|---|---|
dell | alienware_m15_r6_firmware | 𝑥 < 1.3.3 |
dell | chengming_3990_firmware | 𝑥 < 1.4.1 |
dell | chengming_3991_firmware | 𝑥 < 1.4.1 |
dell | g15_5510_firmware | 𝑥 < 1.4.0 |
dell | g15_5511_firmware | 𝑥 < 1.3.3 |
dell | g3_3500_firmware | 𝑥 ≤ 1.9.0 |
dell | g5_5500_firmware | 𝑥 < 1.9.0 |
dell | g7_7500_firmware | 𝑥 < 1.9.0 |
dell | g7_7700_firmware | 𝑥 < 1.9.0 |
dell | inspiron_14_5418_firmware | 𝑥 < 2.1.0_a06 |
dell | inspiron_15_5518_firmware | 𝑥 < 2.1.0_a06 |
dell | inspiron_15_7510_firmware | 𝑥 < 1.0.4 |
dell | inspiron_3501_firmware | 𝑥 < 1.6.0 |
dell | inspiron_3880_firmware | 𝑥 < 1.4.1 |
dell | inspiron_3881_firmware | 𝑥 < 1.4.1 |
dell | inspiron_3891_firmware | 𝑥 < 1.0.11 |
dell | inspiron_5300_firmware | 𝑥 < 1.7.1 |
dell | inspiron_5301_firmware | 𝑥 < 1.8.1 |
dell | inspiron_5310_firmware | 𝑥 < 2.1.0 |
dell | inspiron_5400_2-in-1_firmware | 𝑥 < 1.7.0 |
dell | inspiron_5400_aio_firmware | 𝑥 < 1.4.0 |
dell | inspiron_5401_firmware | 𝑥 < 1.7.2 |
dell | inspiron_5401_aio_firmware | 𝑥 < 1.4.0 |
dell | inspiron_5402_firmware | 𝑥 < 1.5.1 |
dell | inspiron_5406_2n1_firmware | 𝑥 < 1.5.1 |
dell | inspiron_5408_firmware | 𝑥 < 1.7.2 |
dell | inspiron_5409_firmware | 𝑥 < 1.5.1 |
dell | inspiron_5410_2-in-1_firmware | 𝑥 < 2.1.0 |
dell | inspiron_5501_firmware | 𝑥 < 1.7.2 |
dell | inspiron_5502_firmware | 𝑥 < 1.5.1 |
dell | inspiron_5508_firmware | 𝑥 < 1.7.2 |
dell | inspiron_5509_firmware | 𝑥 < 1.5.1 |
dell | inspiron_7300_firmware | 𝑥 < 1.8.1 |
dell | inspiron_7300_2-in-1_firmware | 𝑥 < 1.3.0 |
dell | inspiron_7306_2-in-1_firmware | 𝑥 < 1.5.1 |
dell | inspiron_7400_firmware | 𝑥 < 1.8.1 |
dell | inspiron_7500_firmware | 𝑥 < 1.8.0 |
dell | inspiron_7500_2-in-1_firmware | 𝑥 < 1.3.0 |
dell | inspiron_7501_firmware | 𝑥 < 1.8.0 |
dell | inspiron_7506_firmware | 𝑥 < 1.5.1 |
dell | inspiron_7610_firmware | 𝑥 < 1.0.4 |
dell | inspiron_7700_aio_firmware | 𝑥 < 1.4.0 |
dell | inspiron_7706_2-in-1_firmware | 𝑥 < 1.5.1 |
dell | latitude_3120_firmware | 𝑥 < 1.1.0 |
dell | latitude_3320_firmware | 𝑥 < 1.4.0 |
dell | latitude_3410_firmware | 𝑥 < 1.9.0 |
dell | latitude_3420_firmware | 𝑥 < 1.8.0 |
dell | latitude_3510_firmware | 𝑥 < 1.9.0 |
dell | latitude_3520_firmware | 𝑥 < 1.8.0 |
dell | latitude_5310_firmware | 𝑥 < 1.7.0 |
dell | latitude_5310_2-in-1_firmware | 𝑥 < 1.7.0 |
dell | latitude_5320_firmware | 𝑥 < 1.7.1 |
dell | latitude_5320_2-in-1_firmware | 𝑥 < 1.7.1 |
dell | latitude_5410_firmware | 𝑥 < 1.6.0 |
dell | latitude_5411_firmware | 𝑥 < 1.6.0 |
dell | latitude_5420_firmware | 𝑥 < 1.8.0 |
dell | latitude_5510_firmware | 𝑥 < 1.6.0 |
dell | latitude_5511_firmware | 𝑥 < 1.6.0 |
dell | latitude_5520_firmware | 𝑥 < 1.7.1 |
dell | latitude_5521_firmware | 𝑥 < 1.3.0_a03 |
dell | latitude_7210_2-in-1_firmware | 𝑥 < 1.7.0 |
dell | latitude_7310_firmware | 𝑥 < 1.7.0 |
dell | latitude_7320_firmware | 𝑥 < 1.7.1 |
dell | latitude_7320_detachable_firmware | 𝑥 < 1.4.0_a04 |
dell | latitude_7410_firmware | 𝑥 < 1.7.0 |
dell | latitude_7420_firmware | 𝑥 < 1.7.1 |
dell | latitude_7520_firmware | 𝑥 < 1.7.1 |
dell | latitude_9410_firmware | 𝑥 < 1.7.0 |
dell | latitude_9420_firmware | 𝑥 < 1.4.1 |
dell | latitude_9510_firmware | 𝑥 < 1.6.0 |
dell | latitude_9520_firmware | 𝑥 < 1.5.2 |
dell | latitude_5421_firmware | 𝑥 < 1.3.0_a03 |
dell | optiplex_3080_firmware | 𝑥 < 2.1.1 |
dell | optiplex_3090_uff_firmware | 𝑥 < 1.2.0 |
dell | optiplex_3280_all-in-one_firmware | 𝑥 < 1.7.0 |
dell | optiplex_5080_firmware | 𝑥 < 1.4.0 |
dell | optiplex_5090_tower_firmware | 𝑥 < 1.1.35 |
dell | optiplex_5490_aio_firmware | 𝑥 < 1.3.0 |
dell | optiplex_7080_firmware | 𝑥 < 1.4.0 |
dell | optiplex_7090_tower_firmware | 𝑥 < 1.1.35 |
dell | optiplex_7090_uff_firmware | 𝑥 < 1.2.0 |
dell | optiplex_7480_all-in-one_firmware | 𝑥 < 1.7.0 |
dell | optiplex_7490_all-in-one_firmware | 𝑥 < 1.3.0 |
dell | optiplex_7780_all-in-one_firmware | 𝑥 < 1.7.0 |
dell | precision_17_m5750_firmware | 𝑥 < 1.8.2 |
dell | precision_3440_firmware | 𝑥 < 1.4.0 |
dell | precision_3450_firmware | 𝑥 < 1.1.35 |
dell | precision_3550_firmware | 𝑥 < 1.6.0 |
dell | precision_3551_firmware | 𝑥 < 1.6.0 |
dell | precision_3560_firmware | 𝑥 < 1.7.1 |
dell | precision_3561_firmware | 𝑥 < 1.3.0_a03 |
dell | precision_3640_firmware | 𝑥 < 1.6.2 |
dell | precision_3650_mt_firmware | 𝑥 < 1.2.0 |
dell | precision_5550_firmware | 𝑥 < 1.8.1 |
dell | precision_5560_firmware | 𝑥 < 1.3.2 |
dell | precision_5760_firmware | 𝑥 < 1.1.3 |
dell | precision_7550_firmware | 𝑥 < 1.8.0 |
dell | precision_7560_firmware | 𝑥 < 1.1.2 |
dell | precision_7750_firmware | 𝑥 < 1.8.0 |
dell | precision_7760_firmware | 𝑥 < 1.1.2 |
dell | vostro_14_5410_firmware | 𝑥 < 2.1.0_a06 |
dell | vostro_15_5510_firmware | 𝑥 < 2.1.0_a06 |
dell | vostro_15_7510_firmware | 𝑥 < 1.0.4 |
dell | vostro_3400_firmware | 𝑥 < 1.6.0 |
dell | vostro_3500_firmware | 𝑥 < 1.6.0 |
dell | vostro_3501_firmware | 𝑥 < 1.6.0 |
dell | vostro_3681_firmware | 𝑥 < 2.4.0 |
dell | vostro_3690_firmware | 𝑥 < 1.0.11 |
dell | vostro_3881_firmware | 𝑥 < 2.4.0 |
dell | vostro_3888_firmware | 𝑥 < 2.4.0 |
dell | vostro_3890_firmware | 𝑥 < 1.0.11 |
dell | vostro_5300_firmware | 𝑥 < 1.7.1 |
dell | vostro_5301_firmware | 𝑥 < 1.8.1 |
dell | vostro_5310_firmware | 𝑥 < 2.1.0 |
dell | vostro_5401_firmware | 𝑥 < 1.7.2 |
dell | vostro_5402_firmware | 𝑥 < 1.5.1 |
dell | vostro_5501_firmware | 𝑥 < 1.7.2 |
dell | vostro_5502_firmware | 𝑥 < 1.5.1 |
dell | vostro_5880_firmware | 𝑥 < 1.4.0 |
dell | vostro_5890_firmware | 𝑥 < 1.0.11 |
dell | vostro_7500_firmware | 𝑥 < 1.8.0 |
dell | xps_13_9305_firmware | 𝑥 < 1.0.8 |
dell | xps_13_2in1_9310_firmware | 𝑥 < 2.3.3 |
dell | xps_13_9310_firmware | 𝑥 < 3.0.0 |
dell | xps_15_9500_firmware | 𝑥 < 1.8.1 |
dell | xps_15_9510_firmware | 𝑥 < 1.3.2 |
dell | xps_17_9700_firmware | 𝑥 < 1.8.2 |
dell | xps_17_9710_firmware | 𝑥 < 1.1.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
- CWE-121 - Stack-based Buffer OverflowA stack-based buffer overflow condition is a condition where the buffer being overwritten is allocated on the stack (i.e., is a local variable or, rarely, a parameter to a function).
- CWE-787 - Out-of-bounds WriteThe software writes data past the end, or before the beginning, of the intended buffer.