CVE-2023-28074
MEDIUMDell Bsafe Crypto-c-micro-edition < 4.1.5 - Out-of-Bounds Read
Title source: ruleDescription
Dell BSAFE Crypto-C Micro Edition, version 4.1.5, and Dell BSAFE Micro Edition Suite, versions 4.0 through 4.6.1 and version 5.0, contains an Out-of-bounds Read vulnerability. An unauthenticated attacker with local access could potentially exploit this vulnerability, leading to Information exposure.
References (1)
Core 1
Core References
Vendor Advisory vendor-advisory
https://www.dell.com/support/kbdoc/en-us/000212325/dsa-2023-120-dell-bsafe-micro-edition-suite-security-update
Scores
CVSS v3
6.2
EPSS
0.0005
EPSS Percentile
16.2%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
partial
Details
CWE
CWE-125
Status
published
Products (3)
dell/bsafe_crypto-c-micro-edition
4.0.0 - 4.1.5
dell/bsafe_micro-edition-suite
5.0
dell/bsafe_micro-edition-suite
4.0.0 - 4.6.2
Published
Jul 31, 2024
Tracked Since
Feb 18, 2026