CVE-2021-21557
Summary
| CVE | CVE-2021-21557 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-06-14 19:15:00 UTC |
| Updated | 2022-10-25 23:43:00 UTC |
| Description | Dell PowerEdge Server BIOS and select Dell Precision Rack BIOS contain an out-of-bounds array access vulnerability. A local malicious user with high privileges may potentially exploit this vulnerability, leading to a denial of service, arbitrary code execution, or information disclosure in System Management Mode. |
Risk And Classification
Problem Types: CWE-125
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Dell | Poweredge C4140 | - | All | All | All |
| Operating System | Dell | Poweredge C4140 Firmware | All | All | All | All |
| Hardware | Dell | Poweredge C6420 | - | All | All | All |
| Operating System | Dell | Poweredge C6420 Firmware | All | All | All | All |
| Hardware | Dell | Poweredge C6525 | - | All | All | All |
| Operating System | Dell | Poweredge C6525 Firmware | All | All | All | All |
| Hardware | Dell | Poweredge Fc640 | - | All | All | All |
| Operating System | Dell | Poweredge Fc640 Firmware | All | All | All | All |
| Hardware | Dell | Poweredge M640 | - | All | All | All |
| Hardware | Dell | Poweredge M640p | - | All | All | All |
| Operating System | Dell | Poweredge M640p Firmware | All | All | All | All |
| Operating System | Dell | Poweredge M640 Firmware | All | All | All | All |
| Hardware | Dell | Poweredge Mx740c | - | All | All | All |
| Operating System | Dell | Poweredge Mx740c Firmware | All | All | All | All |
| Hardware | Dell | Poweredge Mx840c | - | All | All | All |
| Operating System | Dell | Poweredge Mx840c Firmware | All | All | All | All |
| Hardware | Dell | Poweredge R240 | - | All | All | All |
| Operating System | Dell | Poweredge R240 Firmware | All | All | All | All |
| Hardware | Dell | Poweredge R340 | - | All | All | All |
| Operating System | Dell | Poweredge R340 Firmware | All | All | All | All |
| Hardware | Dell | Poweredge R440 | - | All | All | All |
| Operating System | Dell | Poweredge R440 Firmware | All | All | All | All |
| Hardware | Dell | Poweredge R540 | - | All | All | All |
| Operating System | Dell | Poweredge R540 Firmware | All | All | All | All |
| Hardware | Dell | Poweredge R640 | - | All | All | All |
| Operating System | Dell | Poweredge R640 Firmware | All | All | All | All |
| Hardware | Dell | Poweredge R6415 | - | All | All | All |
| Operating System | Dell | Poweredge R6415 Firmware | All | All | All | All |
| Hardware | Dell | Poweredge R6515 | - | All | All | All |
| Operating System | Dell | Poweredge R6515 Firmware | All | All | All | All |
| Hardware | Dell | Poweredge R6525 | - | All | All | All |
| Operating System | Dell | Poweredge R6525 Firmware | All | All | All | All |
| Hardware | Dell | Poweredge R740 | - | All | All | All |
| Hardware | Dell | Poweredge R740xd | - | All | All | All |
| Hardware | Dell | Poweredge R740xd2 | - | All | All | All |
| Operating System | Dell | Poweredge R740xd2 Firmware | All | All | All | All |
| Operating System | Dell | Poweredge R740xd Firmware | All | All | All | All |
| Operating System | Dell | Poweredge R740 Firmware | All | All | All | All |
| Hardware | Dell | Poweredge R7415 | - | All | All | All |
| Operating System | Dell | Poweredge R7415 Firmware | All | All | All | All |
| Hardware | Dell | Poweredge R7425 | - | All | All | All |
| Operating System | Dell | Poweredge R7425 Firmware | All | All | All | All |
| Hardware | Dell | Poweredge R7515 | - | All | All | All |
| Operating System | Dell | Poweredge R7515 Firmware | All | All | All | All |
| Hardware | Dell | Poweredge R7525 | - | All | All | All |
| Operating System | Dell | Poweredge R7525 Firmware | All | All | All | All |
| Hardware | Dell | Poweredge R840 | - | All | All | All |
| Operating System | Dell | Poweredge R840 Firmware | All | All | All | All |
| Hardware | Dell | Poweredge R940 | - | All | All | All |
| Hardware | Dell | Poweredge R940xa | - | All | All | All |
| Operating System | Dell | Poweredge R940xa Firmware | All | All | All | All |
| Operating System | Dell | Poweredge R940 Firmware | All | All | All | All |
| Hardware | Dell | Poweredge T140 | - | All | All | All |
| Operating System | Dell | Poweredge T140 Firmware | All | All | All | All |
| Hardware | Dell | Poweredge T340 | - | All | All | All |
| Operating System | Dell | Poweredge T340 Firmware | All | All | All | All |
| Hardware | Dell | Poweredge T440 | - | All | All | All |
| Operating System | Dell | Poweredge T440 Firmware | All | All | All | All |
| Hardware | Dell | Poweredge T640 | - | All | All | All |
| Operating System | Dell | Poweredge T640 Firmware | All | All | All | All |
| Hardware | Dell | Poweredge Xr2 | - | All | All | All |
| Operating System | Dell | Poweredge Xr2 Firmware | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Access Denied | CONFIRM | www.dell.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.