Dell Edge Gateway BIOS, versions 3200 and 5200, contains an out-of-bounds write vulnerability. A local authenticated malicious user with high privileges could potentially exploit this vulnerability leading to exposure of some UEFI code, leading to arbitrary code execution or escalation of privilege.
| Software | From | Fixed in |
|---|---|---|
| dell / edge_gateway_5000_firmware | 0.1.19.0 | 0.1.19.0.x |
| dell / edge_gateway_5100_firmware | 0.1.19.0 | 0.1.19.0.x |
| dell / edge_gateway_5200_firmware | - | 1.05.10 |
| dell / xps_13_9350_firmware | 0.1.13.0 | 0.1.13.0.x |
| dell / chengming_3977_firmware | 0.1.13.0 | 0.1.13.0.x |