MEDIUM · 5.0

CVE-2023-32461

Dell PowerEdge BIOS and Dell Precision BIOS contain a buffer overflow vulnerability. A local malicious user with high privileges could potentially exploit this vulnerability, leading to corrupt memo...

Vulnerability Description

Dell PowerEdge BIOS and Dell Precision BIOS contain a buffer overflow vulnerability. A local malicious user with high privileges could potentially exploit this vulnerability, leading to corrupt memory and potentially escalate privileges.  

CVSS Score

5.0

MEDIUM

CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:L/I:L/A:L
Attack Vector
LOCAL
Attack Complexity
HIGH
Privileges Required
HIGH
User Interaction
NONE
Scope
CHANGED
Confidentiality
LOW
Integrity
LOW
Availability
LOW

Affected Products

VendorProductVersions
DellPoweredge R660 Firmware< 1.5.6
DellPoweredge R660-
DellPoweredge R760 Firmware< 1.5.6
DellPoweredge R760-
DellPoweredge C6620 Firmware< 1.5.6
DellPoweredge C6620-
DellPoweredge Mx760C Firmware< 1.5.6
DellPoweredge Mx760C-
DellPoweredge R860 Firmware< 1.5.6
DellPoweredge R860-
DellPoweredge R960 Firmware< 1.5.6
DellPoweredge R960-
DellPoweredge Hs5610 Firmware< 1.5.6
DellPoweredge Hs5610-
DellPoweredge Hs5620 Firmware< 1.5.6
DellPoweredge Hs5620-
DellPoweredge R660Xs Firmware< 1.5.6
DellPoweredge R660Xs-
DellPoweredge R760Xs Firmware< 1.5.6
DellPoweredge R760Xs-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2023-32461?

CVE-2023-32461 is a vulnerability with a CVSS score of 5.0 (MEDIUM). Dell PowerEdge BIOS and Dell Precision BIOS contain a buffer overflow vulnerability. A local malicious user with high privileges could potentially exploit this vulnerability, leading to corrupt memo...

How severe is CVE-2023-32461?

CVE-2023-32461 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2023-32461?

Check the references section above for vendor advisories and patch information. Affected products include: Dell Poweredge R660 Firmware, Dell Poweredge R660, Dell Poweredge R760 Firmware, Dell Poweredge R760, Dell Poweredge C6620 Firmware.