Not a U.S. government website. NDD is an independent vulnerability database by Volerion and is not affiliated with or endorsed by NIST or NVD.
CVE-2024-28970 Details
Description
Dell Client BIOS contains an Out-of-bounds Write vulnerability. A local authenticated malicious user with admin privileges could potentially exploit this vulnerability, leading to platform denial of service.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
CISA-ADP
Assessed Jun 12, 2024Exploitation: NoneAutomatable: NoTechnical Impact: Partial
References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://www.dell.com/support/kbdoc/en-us/000225476/dsa-2024-168 | CVE | Vendor Advisory |
| https://www.dell.com/support/kbdoc/en-us/000225476/dsa-2024-168 | [email protected] | Vendor Advisory |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-787 | Out-of-bounds Write | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| dell vostro 5502 firmware | < 1.30.0 |
CPE
Remediation
| |
| dell vostro 5502 | All versions |
CPE
Remediation
| |
| dell vostro 5402 firmware | < 1.30.0 |
CPE
Remediation
| |
| dell vostro 5402 | All versions |
CPE
Remediation
| |
| dell precision 3660 firmware | < 2.14.0 |
CPE
Remediation
| |
| dell precision 3660 | All versions |
CPE
Remediation
| |
| dell inspiron 5509 firmware | < 1.30.0 |
CPE
Remediation
| |
| dell inspiron 5509 | All versions |
CPE
Remediation
| |
| dell inspiron 5502 firmware | < 1.30.0 |
CPE
Remediation
| |
| dell inspiron 5502 | All versions |
CPE
Remediation
| |
| dell inspiron 5409 firmware | < 1.30.0 |
CPE
Remediation
| |
| dell inspiron 5409 | All versions |
CPE
Remediation
| |
| dell inspiron 5402 firmware | < 1.30.0 |
CPE
Remediation
| |
| dell inspiron 5402 | All versions |
CPE
Remediation
| |
| dell inspiron 27 7720 all-in-one firmware | < 1.11.0 |
CPE
Remediation
| |
| dell inspiron 27 7720 all-in-one | All versions |
CPE
Remediation
| |
| dell inspiron 24 5420 all-in-one firmware | < 1.11.0 |
CPE
Remediation
| |
| dell inspiron 24 5420 all-in-one | All versions |
CPE
Remediation
| |
| dell inspiron 16 plus 7640 firmware | < 1.6.0 |
CPE
Remediation
| |
| dell inspiron 16 plus 7640 | All versions |
CPE
Remediation
| |
| dell inspiron 16 7640 2-in-1 firmware | < 1.4.0 |
CPE
Remediation
| |
| dell inspiron 16 7640 2-in-1 | All versions |
CPE
Remediation
| |
| dell inspiron 14 plus 7440 firmware | < 1.6.0 |
CPE
Remediation
| |
| dell inspiron 14 plus 7440 | All versions |
CPE
Remediation
| |
| dell g7 7700 firmware | < 1.32.0 |
CPE
Remediation
| |
| dell g7 7700 | All versions |
CPE
Remediation
| |
| dell g7 7500 firmware | < 1.32.0 |
CPE
Remediation
| |
| dell g7 7500 | All versions |
CPE
Remediation
| |
Change History
5 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Nov 21, 2024 | CVE Modified | CVE |
| Sep 18, 2024 | Initial Analysis | [email protected] |
| Jun 12, 2024 | New CVE Received | [email protected] |