CVE-2024-22453

HIGH

Dell PowerEdge Server BIOS - Buffer Overflow

Title source: llm
STIX 2.1

Description

Dell PowerEdge Server BIOS contains a heap-based buffer overflow vulnerability. A local high privileged attacker could potentially exploit this vulnerability to write to otherwise unauthorized memory.

Scores

CVSS v3 7.2
EPSS 0.0003
EPSS Percentile 7.1%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:N/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-122 CWE-787
Status published
Products (25)
dell/nx3230_firmware < 2.19.0
dell/nx3330_firmware < 2.19.0
dell/poweredge_c4130_firmware < 2.19.0
dell/poweredge_c6320_firmware < 2.19.0
dell/poweredge_fc430_firmware < 2.19.0
dell/poweredge_fc630_firmware < 2.19.0
dell/poweredge_fc830_firmware < 2.19.0
dell/poweredge_m630_\(pe_vrtx\)_firmware < 2.19.0
dell/poweredge_m630_firmware < 2.19.0
dell/poweredge_m830_\(pe_vrtx\)_firmware < 2.19.0
... and 15 more
Published Mar 19, 2024
Tracked Since Feb 18, 2026