CVE-2022-22566
Last modified
CVE-2022-22566 is a high-severity vulnerability rated 7.2/10 on the CVSS scale. Select Dell Client Commercial and Consumer platforms contain a pre-boot direct memory access (DMA) vulnerability. An authenticated attacker with physical access to the system may potentially exploit this vulnerability in order to execute arbitrary code on the device.. EPSS estimates a 0.25% chance of exploitation in the next 30 days.
Description
Select Dell Client Commercial and Consumer platforms contain a pre-boot direct memory access (DMA) vulnerability. An authenticated attacker with physical access to the system may potentially exploit this vulnerability in order to execute arbitrary code on the device.
Metrics
CVSS:3.1/AV:P/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Dell | Alienware Area 51m R1 Firmware | < 1.16.0 |
| Dell | Alienware Area 51m R2 Firmware | < 1.11.0 |
| Dell | Alienware M15 R3 Firmware | < 1.12.0 |
| Dell | Alienware M15 R4 Firmware | < 1.6.2 |
| Dell | Alienware M15 R6 Firmware | < 1.6.0 |
| Dell | Alienware M15 R6 Firmware | > 1.6.0, < 1.8.0 |
| Dell | Alienware M17 R3 Firmware | < 1.12.0 |
| Dell | Alienware M17 R4 Firmware | < 1.6.2 |
| Dell | Chengming 3990 Firmware | < 1.6.0 |
| Dell | Chengming 3991 Firmware | < 1.6.0 |
| Dell | G15 5510 Firmware | < 1.8.0 |
| Dell | G15 5511 Firmware | < 1.9.0 |
| Dell | G3 3500 Firmware | < 1.12.0 |
| Dell | G3 3590 Firmware | < 1.14.0 |
| Dell | G5 5000 Firmware | < 1.4.0 |
| Dell | G5 5500 Firmware | < 1.12.0 |
| Dell | G7 7500 Firmware | < 1.11.1 |
| Dell | G7 7700 Firmware | < 1.11.1 |
| Dell | Inspiron 14 5410 Firmware | < 2.6.1 |
| Dell | Inspiron 14 5418 Firmware | < 2.6.1 |
| Dell | Inspiron 15 5510 Firmware | < 2.6.1 |
| Dell | Inspiron 15 5518 Firmware | < 2.6.1 |
| Dell | Inspiron 3490 Firmware | < 1.15.0 |
| Dell | Inspiron 3493 Firmware | < 1.18.0 |
| Dell | Inspiron 3501 Firmware | < 1.11.0 |
| Dell | Inspiron 3511 Firmware | < 1.8.0 |
| Dell | Inspiron 3590 Firmware | < 1.15.0 |
| Dell | Inspiron 3593 Firmware | < 1.18.0 |
| Dell | Inspiron 3790 Firmware | < 1.15.0 |
| Dell | Inspiron 3793 Firmware | < 1.18.0 |
| Dell | Inspiron 3880 Firmware | < 1.6.0 |
| Dell | Inspiron 3881 Firmware | < 1.6.0 |
| Dell | Inspiron 3891 Firmware | < 1.4.1 |
| Dell | Inspiron 5300 Firmware | < 1.10.0 |
| Dell | Inspiron 5301 Firmware | < 1.12.0 |
| Dell | Inspiron 5310 Firmware | < 2.6.1 |
| Dell | Inspiron 5390 Firmware | < 1.14.0 |
| Dell | Inspiron 5391 Firmware | < 1.15.0 |
| Dell | Inspiron 5400 2-In-1 Firmware | < 1.10.0 |
| Dell | Inspiron 5400 Aio Firmware | < 1.6.0 |
| Dell | Inspiron 5401 Firmware | < 1.10.0 |
| Dell | Inspiron 5401 Aio Firmware | < 1.6.0 |
| Dell | Inspiron 5402 Firmware | < 1.9.0 |
| Dell | Inspiron 5406 2-In-1 Firmware | < 1.9.0 |
| Dell | Inspiron 5408 Firmware | < 1.10.0 |
| Dell | Inspiron 5409 Firmware | < 1.9.0 |
| Dell | Inspiron 5410 Firmware | < 2.6.1 |
| Dell | Inspiron 5490 Firmware | < 1.16.1 |
| Dell | Inspiron 5490 Aio Firmware | < 1.11.0 |
| Dell | Inspiron 5491 2-In-1 Firmware | < 1.12.1 |
Showing 50 of 216 affected configurations. See NVD for the full list.
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2022-22566?
How severe is CVE-2022-22566?
How do I fix CVE-2022-22566?
Are you affected by CVE-2022-22566?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
