CVE-2024-28970

Dell Client BIOS contains an Out-of-bounds Write vulnerability. A local authenticated malicious user with admin privileges could potentially exploit this vulnerability, leading to platform denial of service.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
4.7 MEDIUM
LOCAL
HIGH
HIGH
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:L/A:H
dellCNA
4.7 MEDIUM
LOCAL
HIGH
HIGH
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:L/A:H
CISA-ADPADP
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 5%
VendorProductVersion
dellvostro_5502_firmware
𝑥
< 1.30.0
dellvostro_5402_firmware
𝑥
< 1.30.0
dellprecision_3660_firmware
𝑥
< 2.14.0
dellinspiron_5509_firmware
𝑥
< 1.30.0
dellinspiron_5502_firmware
𝑥
< 1.30.0
dellinspiron_5409_firmware
𝑥
< 1.30.0
dellinspiron_5402_firmware
𝑥
< 1.30.0
dellinspiron_27_7720_all-in-one_firmware
𝑥
< 1.11.0
dellinspiron_24_5420_all-in-one_firmware
𝑥
< 1.11.0
dellinspiron_16_plus_7640_firmware
𝑥
< 1.6.0
dellinspiron_16_7640_2-in-1_firmware
𝑥
< 1.4.0
dellinspiron_14_plus_7440_firmware
𝑥
< 1.6.0
dellg7_7700_firmware
𝑥
< 1.32.0
dellg7_7500_firmware
𝑥
< 1.32.0
𝑥
= Vulnerable software versions