Multiple vulnerabilities in Dell Client Platform BIOS



Risk Low
Patch available YES
Number of vulnerabilities 2
CVE-ID CVE-2025-20054
CVE-2024-43420
CWE-ID CWE-248
CWE-200
Exploitation vector Local
Public exploit N/A
Vulnerable software
XPS 8950
Hardware solutions / Firmware

Vostro 15 3530
Hardware solutions / Firmware

Vostro 14 3430
Hardware solutions / Firmware

Precision 7960 Tower
Hardware solutions / Firmware

Precision 5860 Tower
Hardware solutions / Firmware

Inspiron 16 Plus 7630
Hardware solutions / Firmware

Inspiron 15 3530
Hardware solutions / Firmware

Inspiron 14 Plus 7430
Hardware solutions / Firmware

Alienware M18 R2
Hardware solutions / Firmware

Alienware m18 R1
Hardware solutions / Firmware

Alienware m16 R1
Hardware solutions / Firmware

Alienware Aurora R13
Hardware solutions / Firmware

XPS 8940
Hardware solutions / Firmware

XPS 15 9510
Hardware solutions / Firmware

XPS 15 9500
Hardware solutions / Firmware

XPS 15 7590
Hardware solutions / Firmware

XPS 13 9310 2-in-1
Hardware solutions / Firmware

XPS 13 9310
Hardware solutions / Firmware

XPS 13 9305
Hardware solutions / Firmware

Vostro 5890
Hardware solutions / Firmware

Vostro 5880
Hardware solutions / Firmware

Vostro 3890
Hardware solutions / Firmware

Vostro 3888
Hardware solutions / Firmware

Vostro 3881
Hardware solutions / Firmware

Vostro 3690
Hardware solutions / Firmware

Vostro 3681
Hardware solutions / Firmware

Vostro 3500
Hardware solutions / Firmware

Vostro 3400
Hardware solutions / Firmware

Vostro 15 7510
Hardware solutions / Firmware

Vostro 15 5510
Hardware solutions / Firmware

Vostro 15 3510
Hardware solutions / Firmware

Vostro 14 5410
Hardware solutions / Firmware

Vostro 13 5310
Hardware solutions / Firmware

Precision 7760
Hardware solutions / Firmware

Precision 7750
Hardware solutions / Firmware

Precision 7730
Hardware solutions / Firmware

Precision 7560
Hardware solutions / Firmware

Precision 7550
Hardware solutions / Firmware

Precision 7540
Hardware solutions / Firmware

Precision 5750
Hardware solutions / Firmware

Precision 5560
Hardware solutions / Firmware

Precision 5550
Hardware solutions / Firmware

Precision 5540
Hardware solutions / Firmware

Precision 3930 Rack
Hardware solutions / Firmware

Precision 3650 Tower
Hardware solutions / Firmware

Precision 3640
Hardware solutions / Firmware

Precision 3560
Hardware solutions / Firmware

Precision 3551
Hardware solutions / Firmware

Precision 3550
Hardware solutions / Firmware

Precision 3541
Hardware solutions / Firmware

Precision 3540
Hardware solutions / Firmware

Precision 3450
Hardware solutions / Firmware

Precision 3440
Hardware solutions / Firmware

OptiPlex 7780 All-in-One
Hardware solutions / Firmware

OptiPlex 7770 All-In-One
Hardware solutions / Firmware

OptiPlex 7490 All-in-One
Hardware solutions / Firmware

OptiPlex 7470 All-In-One
Hardware solutions / Firmware

Optiplex 7090 Ultra
Hardware solutions / Firmware

OptiPlex 7090 Tower
Hardware solutions / Firmware

OptiPlex 7080
Hardware solutions / Firmware

OptiPlex 7070 Ultra
Hardware solutions / Firmware

OptiPlex 5490 All-In-One
Hardware solutions / Firmware

OptiPlex 5480 All-In-One
Hardware solutions / Firmware

OptiPlex 5270 All-In-One
Hardware solutions / Firmware

OptiPlex 5090 Micro / OptiPlex 5090 Small Form Factor / OptiPlex 5090 Tower
Hardware solutions / Firmware

OptiPlex 5080
Hardware solutions / Firmware

OptiPlex 5070
Hardware solutions / Firmware

OptiPlex 3280 All-in-One
Hardware solutions / Firmware

OptiPlex 3090 Ultra
Hardware solutions / Firmware

OptiPlex 3090
Hardware solutions / Firmware

OptiPlex 3080
Hardware solutions / Firmware

OptiPlex 3070
Hardware solutions / Firmware

Latitude 9520
Hardware solutions / Firmware

Latitude 9510 2in1
Hardware solutions / Firmware

Latitude 9420
Hardware solutions / Firmware

Latitude 9410
Hardware solutions / Firmware

Latitude 7520
Hardware solutions / Firmware

Latitude 7420
Hardware solutions / Firmware

Latitude 7410
Hardware solutions / Firmware

Latitude 7400 2-in-1
Hardware solutions / Firmware

Latitude 7400
Hardware solutions / Firmware

Latitude 7330 Rugged Laptop
Hardware solutions / Firmware

Latitude 7320 Detachable
Hardware solutions / Firmware

Latitude 7320
Hardware solutions / Firmware

Latitude 7310
Hardware solutions / Firmware

Latitude 7300
Hardware solutions / Firmware

Latitude 7210 2-in-1
Hardware solutions / Firmware

Latitude 7200 2-in-1
Hardware solutions / Firmware

Latitude 5520
Hardware solutions / Firmware

Latitude 5511
Hardware solutions / Firmware

Latitude 5510
Hardware solutions / Firmware

Latitude 5501
Hardware solutions / Firmware

Latitude 5500
Hardware solutions / Firmware

Latitude 5430 Rugged Laptop
Hardware solutions / Firmware

Latitude 5421
Hardware solutions / Firmware

Latitude 5420
Hardware solutions / Firmware

Latitude 5411
Hardware solutions / Firmware

Latitude 5410
Hardware solutions / Firmware

Latitude 5401
Hardware solutions / Firmware

Latitude 5320
Hardware solutions / Firmware

Latitude 5310 2-IN-1
Hardware solutions / Firmware

Latitude 5310
Hardware solutions / Firmware

Latitude 5300 2-IN-1
Hardware solutions / Firmware

Latitude 5300
Hardware solutions / Firmware

Latitude 3510
Hardware solutions / Firmware

Latitude 3500
Hardware solutions / Firmware

Latitude 3410
Hardware solutions / Firmware

Latitude 3400
Hardware solutions / Firmware

Latitude 3320
Hardware solutions / Firmware

Latitude 3310 2-in-1
Hardware solutions / Firmware

Latitude 3310
Hardware solutions / Firmware

Latitude 3301
Hardware solutions / Firmware

Latitude 3190 2-In-1
Hardware solutions / Firmware

Latitude 3190
Hardware solutions / Firmware

Latitude 3140 2in1
Hardware solutions / Firmware

Latitude 3140
Hardware solutions / Firmware

Inspiron 7700 All-In-One
Hardware solutions / Firmware

Inspiron 5401 AIO
Hardware solutions / Firmware

Inspiron 5400/5401
Hardware solutions / Firmware

Inspiron 3891
Hardware solutions / Firmware

Inspiron 3502
Hardware solutions / Firmware

Inspiron 3501
Hardware solutions / Firmware

Inspiron 16 7610
Hardware solutions / Firmware

Inspiron 15 7510
Hardware solutions / Firmware

Inspiron 15 5510/5518
Hardware solutions / Firmware

Inspiron 15 3521
Hardware solutions / Firmware

Inspiron 15 3511
Hardware solutions / Firmware

Inspiron 15 3510
Hardware solutions / Firmware

Inspiron 14 5410 2-in-1
Hardware solutions / Firmware

Inspiron 14 5410/5418
Hardware solutions / Firmware

Inspiron 13 5310
Hardware solutions / Firmware

Dell Precision 7920 Tower
Hardware solutions / Firmware

Dell Precision 7820 Tower
Hardware solutions / Firmware

Dell Precision 5820 Tower
Hardware solutions / Firmware

Dell Precision 3431 Tower
Hardware solutions / Firmware

Dell G5 5000
Hardware solutions / Firmware

Dell G15 5511
Hardware solutions / Firmware

Dell G15 5510
Hardware solutions / Firmware

ChengMing 3991
Hardware solutions / Firmware

ChengMing 3990
Hardware solutions / Firmware

Alienware x17 R1
Hardware solutions / Firmware

Alienware x15 R1
Hardware solutions / Firmware

Alienware m17 R4
Hardware solutions / Firmware

Alienware m17 R3
Hardware solutions / Firmware

Alienware m15 R6
Hardware solutions / Firmware

Alienware m15 R4
Hardware solutions / Firmware

Alienware Aurora R12
Hardware solutions / Firmware

Alienware Area 51m R2
Hardware solutions / Firmware

Precision 3240 Compact
Hardware solutions / Other hardware appliances

OptiPlex 7071
Hardware solutions / Other hardware appliances

Vendor Dell

Security Bulletin

This security bulletin contains information about 2 vulnerabilities.

1) Uncaught Exception

EUVDB-ID: #VU109427

Risk: Low

CVSSv4.0: 4.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2025-20054

CWE-ID: CWE-248 - Uncaught Exception

Exploit availability: No

Description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to an uncaught exception in the core management mechanism for some Intel Processors. A local user can perform a denial of service (DoS) attack.

Mitigation

Install updates from vendor's website

Vulnerable software versions

XPS 8950: before 1.26.0

Vostro 15 3530: before 1.20.0

Vostro 14 3430: before 1.20.0

Precision 7960 Tower: before 2.10.0

Precision 5860 Tower: before 2.10.0

Inspiron 16 Plus 7630: before 1.21.0

Inspiron 15 3530: before 1.20.0

Inspiron 14 Plus 7430: before 1.21.0

Alienware M18 R2: before 1.14.0

Alienware m18 R1: before 1.26.0

Alienware m16 R1: before 1.26.0

Alienware Aurora R13: before 1.26.0

CPE2.3 External links

https://www.dell.com/support/kbdoc/nl-nl/000272449/dsa-2025-048


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

2) Information disclosure

EUVDB-ID: #VU109423

Risk: Low

CVSSv4.0: 1.9 [CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N/E:U/U:Clear]

CVE-ID: CVE-2024-43420

CWE-ID: CWE-200 - Exposure of sensitive information to an unauthorized actor

Exploit availability: No

Description

The vulnerability allows a local user to gain access to potentially sensitive information.

The vulnerability exists due to shared microarchitectural predictor state that influences transient execution. A local user can gain access to sensitive information.

Mitigation

Install updates from vendor's website

Vulnerable software versions

XPS 8950: before 1.26.0

XPS 8940: before 2.26.0

XPS 15 9510: before 1.37.0

XPS 15 9500: before 1.34.0

XPS 15 7590: before 1.35.0

XPS 13 9310 2-in-1: before 2.32.0

XPS 13 9310: before 3.30.0

XPS 13 9305: before 1.29.0

Vostro 5890: before 1.33.0

Vostro 5880: before 1.32.0

Vostro 3890: before 1.32.0

Vostro 3888: before 2.32.0

Vostro 3881: before 2.32.0

Vostro 3690: before 1.32.0

Vostro 3681: before 2.32.0

Vostro 3500: before 1.37.0

Vostro 3400: before 1.37.0

Vostro 15 7510: before 1.30.0

Vostro 15 5510: before 2.32.0

Vostro 15 3530: before 1.20.0

Vostro 15 3510: before 1.36.0

Vostro 14 5410: before 2.32.0

Vostro 14 3430: before 1.20.0

Vostro 13 5310: before 2.33.0

Precision 7960 Tower: before 2.10.0

Precision 7760: before 1.39.0

Precision 7750: before 1.37.0

Precision 7730: before 1.40.1

Precision 7560: before 1.39.0

Precision 7550: before 1.37.0

Precision 7540: before 1.39.1

Precision 5860 Tower: before 2.10.0

Precision 5750: before 1.34.0

Precision 5560: before 1.37.0

Precision 5550: before 1.34.0

Precision 5540: before 1.35.0

Precision 3930 Rack: before 2.35.0

Precision 3650 Tower: before 1.38.0

Precision 3640: before 1.37.0

Precision 3560: before 1.43.0

Precision 3551: before 1.35.0

Precision 3550: before 1.35.0

Precision 3541: before 1.38.0

Precision 3540: before 1.38.0

Precision 3450: before 1.33.0

Precision 3440: before 1.32.0

Precision 3240 Compact: before 1.33.0

OptiPlex 7780 All-in-One: before 1.37.0

OptiPlex 7770 All-In-One: before 1.35.0

OptiPlex 7490 All-in-One: before 1.37.0

OptiPlex 7470 All-In-One: before 1.35.0

Optiplex 7090 Ultra: before 1.34.0

OptiPlex 7090 Tower: before 1.33.0

OptiPlex 7080: before 1.32.0

OptiPlex 7071: before 1.32.0

OptiPlex 7070 Ultra: before 1.30.0

OptiPlex 5490 All-In-One: before 1.37.0

OptiPlex 5480 All-In-One: before 1.37.0

OptiPlex 5270 All-In-One: before 1.35.0

OptiPlex 5090 Micro / OptiPlex 5090 Small Form Factor / OptiPlex 5090 Tower: before 1.33.0

OptiPlex 5080: before 1.29.0

OptiPlex 5070: before 1.32.0

OptiPlex 3280 All-in-One: before 1.36.0

OptiPlex 3090 Ultra: before 1.34.0

OptiPlex 3090: before 2.23.0

OptiPlex 3080: before 2.29.0

OptiPlex 3070: before 1.32.0

Latitude 9520: before 1.39.0

Latitude 9510 2in1: before 1.34.0

Latitude 9420: before 1.38.0

Latitude 9410: before 1.35.0

Latitude 7520: before 1.42.0

Latitude 7420: before 1.42.0

Latitude 7410: before 1.37.0

Latitude 7400 2-in-1: before 1.34.0

Latitude 7400: before 1.39.0

Latitude 7330 Rugged Laptop: before 1.35.0

Latitude 7320 Detachable: before 1.39.0

Latitude 7320: before 1.42.0

Latitude 7310: before 1.37.0

Latitude 7300: before 1.39.0

Latitude 7210 2-in-1: before 1.36.0

Latitude 7200 2-in-1: before 1.35.0

Latitude 5520: before 1.43.0

Latitude 5511: before 1.35.0

Latitude 5510: before 1.35.0

Latitude 5501: before 1.38.0

Latitude 5500: before 1.38.0

Latitude 5430 Rugged Laptop: before 1.35.0

Latitude 5421: before 1.38.0

Latitude 5420: before 1.45.0

Latitude 5411: before 1.35.0

Latitude 5410: before 1.35.0

Latitude 5401: before 1.38.0

Latitude 5320: before 1.43.0

Latitude 5310 2-IN-1: before 1.27.0

Latitude 5310: before 1.27.0

Latitude 5300 2-IN-1: before 1.35.0

Latitude 5300: before 1.35.0

Latitude 3510: before 1.33.0

Latitude 3500: before 1.37.0

Latitude 3410: before 1.33.0

Latitude 3400: before 1.37.0

Latitude 3320: before 1.35.0

Latitude 3310 2-in-1: before 1.28.0

Latitude 3310: before 1.29.0

Latitude 3301: before 1.35.0

Latitude 3190 2-In-1: before 1.38.0

Latitude 3190: before 1.38.0

Latitude 3140 2in1: before 1.24.0

Latitude 3140: before 1.24.0

Inspiron 7700 All-In-One: before 1.36.0

Inspiron 5401 AIO: before 1.36.0

Inspiron 5400/5401: before 1.36.0

Inspiron 3891: before 1.32.0

Inspiron 3502: before 1.22.0

Inspiron 3501: before 1.37.0

Inspiron 16 Plus 7630: before 1.21.0

Inspiron 16 7610: before 1.30.0

Inspiron 15 7510: before 1.30.0

Inspiron 15 5510/5518: before 2.32.0

Inspiron 15 3530: before 1.20.0

Inspiron 15 3521: before 1.20.0

Inspiron 15 3511: before 1.36.0

Inspiron 15 3510: before 1.25.0

Inspiron 14 Plus 7430: before 1.21.0

Inspiron 14 5410 2-in-1: before 2.32.0

Inspiron 14 5410/5418: before 2.32.0

Inspiron 13 5310: before 2.33.0

Dell Precision 7920 Tower: before 2.46.0

Dell Precision 7820 Tower: before 2.46.0

Dell Precision 5820 Tower: before 2.42.0

Dell Precision 3431 Tower: before 1.33.0

Dell G5 5000: before 1.27.0

Dell G15 5511: before 1.35.0

Dell G15 5510: before 1.31.0

ChengMing 3991: before 1.32.0

ChengMing 3990: before 1.32.0

Alienware x17 R1: before 1.28.0

Alienware x15 R1: before 1.28.0

Alienware M18 R2: before 1.14.0

Alienware m18 R1: before 1.26.0

Alienware m17 R4: before 1.27.0

Alienware m17 R3: before 1.31.0

Alienware m16 R1: before 1.26.0

Alienware m15 R6: before 1.36.0

Alienware m15 R4: before 1.27.0

Alienware Aurora R13: before 1.26.0

Alienware Aurora R12: before 1.1.29

Alienware Area 51m R2: before 1.31.0

CPE2.3 External links

https://www.dell.com/support/kbdoc/nl-nl/000272449/dsa-2025-048


Q & A

Can this vulnerability be exploited remotely?

No. This vulnerability can be exploited locally. The attacker should have authentication credentials and successfully authenticate on the system.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.



###SIDEBAR###