Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-32855


Dell Client Platform BIOS contains an Out-of-bounds Write vulnerability in an externally developed component. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Information tampering.


Security Impact Summary

This vulnerability carries a LOW severity rating with a CVSS v3.1 score of 3.8, requiring local system access to exploit but requires specific conditions to be met though user interaction is required . The vulnerability impacts limited data confidentiality, limited integrity, and limited availability for affected systems. Impacting 148 products from dell, from dell, from dell and 145 others, organizations running these solutions should prioritize assessment and patching.

Historical Context

Reported in 2024, this vulnerability emerged during an era marked by increased sophistication in supply chain attacks, cloud infrastructure vulnerabilities, and software-as-a-service (SaaS) security challenges. Security practices during this period emphasized zero-trust architectures, container security, and API protection.


Published

2024-06-25T04:15:14.600

Last Modified

2025-02-04T17:21:35.797

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 3.8 (LOW)

Weaknesses
  • Type: Secondary
    CWE-787

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System dell inspiron_3480_firmware < 1.30.0 Yes
Hardware dell inspiron_3480 - No
Operating System dell inspiron_3580_firmware < 1.30.0 Yes
Hardware dell inspiron_3580 - No
Operating System dell latitude_3120_firmware < 1.26.0 Yes
Hardware dell latitude_3120 - No
Operating System dell latitude_3190_firmware < 1.34.0 Yes
Hardware dell latitude_3190 - No
Operating System dell latitude_3190_2-in-1_firmware < 1.34.0 Yes
Hardware dell latitude_3190_2-in-1 - No
Operating System dell latitude_3300_firmware < 1.28.0 Yes
Hardware dell latitude_3300 - No
Operating System dell latitude_3310_firmware < 1.25.0 Yes
Hardware dell latitude_3310 - No
Operating System dell latitude_3310_2-in-1_firmware < 1.24.0 Yes
Hardware dell latitude_3310_2-in-1 - No
Operating System dell latitude_3390_2-in-1_firmware < 1.31.0 Yes
Hardware dell latitude_3390_2-in-1 - No
Operating System dell latitude_5288_firmware < 1.36.0 Yes
Hardware dell latitude_5288 - No
Operating System dell latitude_5290_firmware < 1.35.0 Yes
Hardware dell latitude_5290 - No
Operating System dell latitude_5290_2-in-1_firmware < 1.34.0 Yes
Hardware dell latitude_5290_2-in-1 - No
Operating System dell latitude_5300_firmware < 1.31.0 Yes
Hardware dell latitude_5300 - No
Operating System dell latitude_5300_2-in-1_firmware < 1.31.0 Yes
Hardware dell latitude_5300_2-in-1 - No
Operating System dell latitude_5310_firmware < 1.24.0 Yes
Hardware dell latitude_5310 - No
Operating System dell latitude_5310_2-in-1_firmware < 1.24.0 Yes
Hardware dell latitude_5310_2-in-1 - No
Operating System dell latitude_5400_firmware < 1.30.0 Yes
Hardware dell latitude_5400 - No
Operating System dell latitude_5401_firmware < 1.31.0 Yes
Hardware dell latitude_5401 - No
Operating System dell latitude_5410_firmware < 1.28.0 Yes
Hardware dell latitude_5410 - No
Operating System dell latitude_5411_firmware < 1.29.0 Yes
Hardware dell latitude_5411 - No
Operating System dell latitude_5420_rugged_firmware < 1.32.0 Yes
Hardware dell latitude_5420_rugged - No
Operating System dell latitude_5424_rugged_firmware < 1.32.0 Yes
Hardware dell latitude_5424_rugged - No
Operating System dell latitude_5480_firmware < 1.36.0 Yes
Hardware dell latitude_5480 - No
Operating System dell latitude_5488_firmware < 1.36.0 Yes
Hardware dell latitude_5488 - No
Operating System dell latitude_5490_firmware < 1.35.0 Yes
Hardware dell latitude_5490 - No
Operating System dell latitude_5491_firmware < 1.33.0 Yes
Hardware dell latitude_5491 - No
Operating System dell latitude_5500_firmware < 1.30.0 Yes
Hardware dell latitude_5500 - No
Operating System dell latitude_5501_firmware < 1.31.0 Yes
Hardware dell latitude_5501 - No
Operating System dell latitude_5510_firmware < 1.28.0 Yes
Hardware dell latitude_5510 - No
Operating System dell latitude_5511_firmware < 1.29.0 Yes
Hardware dell latitude_5511 - No
Operating System dell latitude_5580_firmware < 1.36.0 Yes
Hardware dell latitude_5580 - No
Operating System dell latitude_5590_firmware < 1.35.0 Yes
Hardware dell latitude_5590 - No
Operating System dell latitude_5591_firmware < 1.33.0 Yes
Hardware dell latitude_5591 - No
Operating System dell latitude_7200_2-in-1_firmware < 1.29.0 Yes
Hardware dell latitude_7200_2-in-1 - No
Operating System dell latitude_7210_2-in-1_firmware < 1.30.0 Yes
Hardware dell latitude_7210_2-in-1 - No
Operating System dell latitude_7212_rugged_extreme_tablet_firmware < 1.50.0 Yes
Hardware dell latitude_7212_rugged_extreme_tablet - No
Operating System dell latitude_7220_rugged_extreme_firmware < 1.36.0 Yes
Hardware dell latitude_7220_rugged_extreme - No
Operating System dell latitude_7280_firmware < 1.37.0 Yes
Hardware dell latitude_7280 - No
Operating System dell latitude_7290_firmware < 1.38.0 Yes
Hardware dell latitude_7290 - No
Operating System dell latitude_7300_firmware < 1.31.0 Yes
Hardware dell latitude_7300 - No
Operating System dell latitude_7310_firmware < 1.30.0 Yes
Hardware dell latitude_7310 - No
Operating System dell latitude_7380_firmware < 1.37.0 Yes
Hardware dell latitude_7380 - No
Operating System dell latitude_7390_firmware < 1.38.0 Yes
Hardware dell latitude_7390 - No
Operating System dell latitude_7390_2-in-1_firmware < 1.35.0 Yes
Hardware dell latitude_7390_2-in-1 - No
Operating System dell latitude_7400_firmware < 1.31.0 Yes
Hardware dell latitude_7400 - No
Operating System dell latitude_7400_2-in-1_firmware < 1.28.0 Yes
Hardware dell latitude_7400_2-in-1 - No
Operating System dell latitude_7410_firmware < 1.30.0 Yes
Hardware dell latitude_7410 - No
Operating System dell latitude_7424_rugged_extreme_firmware < 1.32.0 Yes
Hardware dell latitude_7424_rugged_extreme - No
Operating System dell latitude_7480_firmware < 1.37.0 Yes
Hardware dell latitude_7480 - No
Operating System dell latitude_7490_firmware < 1.38.0 Yes
Hardware dell latitude_7490 - No
Operating System dell latitude_9410_firmware < 1.29.0 Yes
Hardware dell latitude_9410 - No
Operating System dell latitude_9510_2in1_firmware < 1.28.0 Yes
Hardware dell latitude_9510_2in1 - No
Operating System dell latitude_rugged_7220ex_firmware < 1.36.0 Yes
Hardware dell latitude_rugged_7220ex - No
Operating System dell precision_3520_firmware < 1.36.0 Yes
Hardware dell precision_3520 - No
Operating System dell precision_3530_firmware < 1.33.0 Yes
Hardware dell precision_3530 - No
Operating System dell precision_3540_firmware < 1.30.0 Yes
Hardware dell precision_3540 - No
Operating System dell precision_3541_firmware < 1.31.0 Yes
Hardware dell precision_3541 - No
Operating System dell precision_3550_firmware < 1.28.0 Yes
Hardware dell precision_3550 - No
Operating System dell precision_3551_firmware < 1.29.0 Yes
Hardware dell precision_3551 - No
Operating System dell precision_5530_firmware < 1.37.0 Yes
Hardware dell precision_5530 - No
Operating System dell precision_5530_2-in-1_firmware < 1.31.8 Yes
Hardware dell precision_5530_2-in-1 - No
Operating System dell precision_5540_firmware < 1.28.0 Yes
Hardware dell precision_5540 - No
Operating System dell precision_7530_firmware < 1.34.0 Yes
Hardware dell precision_7530 - No
Operating System dell precision_7540_firmware < 1.32.0 Yes
Hardware dell precision_7540 - No
Operating System dell precision_7550_firmware < 1.31.0 Yes
Hardware dell precision_7550 - No
Operating System dell precision_7730_firmware < 1.34.0 Yes
Hardware dell precision_7730 - No
Operating System dell precision_7740_firmware < 1.32.0 Yes
Hardware dell precision_7740 - No
Operating System dell precision_7750_firmware < 1.31.0 Yes
Hardware dell precision_7750 - No
Operating System dell vostro_3480_firmware < 1.30.0 Yes
Hardware dell vostro_3480 - No
Operating System dell vostro_3580_firmware < 1.30.0 Yes
Hardware dell vostro_3580 - No
Operating System dell vostro_3583_firmware < 1.30.0 Yes
Hardware dell vostro_3583 - No
Operating System dell wyse_5470_firmware < 1.25.0 Yes
Hardware dell wyse_5470 - No
Operating System dell wyse_5470_all-in-one_firmware < 1.26.0 Yes
Hardware dell wyse_5470_all-in-one - No
Operating System dell xps_15_7590_firmware < 1.28.0 Yes
Hardware dell xps_15_7590 - No

References

How SecUtils Interprets This CVE

SecUtils normalizes and enriches National Vulnerability Database (NVD) records by standardizing vendor and product identifiers, aggregating vulnerability metadata from both NVD and MITRE sources, and providing structured context for security teams. For dell's affected products, we extract Common Platform Enumeration (CPE) data, Common Weakness Enumeration (CWE) classifications, CVSS severity metrics, and reference data to enable rapid vulnerability prioritization and asset correlation. This record contains no exploit code, proof-of-concept instructions, or attack methodologies—only defensive intelligence necessary for patch management, risk assessment, and security operations.