Binarly Advisories

REsearch

Binarly Advisories

[BRLY-2022-099] Memory contents leak / information disclosure vulnerability in DXE driver on Dell platform.

BINARLY efiXplorer team

BINARLY efiXplorer team has discovered a memory contents leak / information disclosure vulnerability that allows a potential attacker to dump stack memory or global memory into an NVRAM variable. This in turn could help building a successful attack vector based on exploiting a memory corruption vulnerability.

Read more

[BRLY-2022-087] Memory contents leak / information disclosure vulnerability in DXE driver on Dell platform.

BINARLY efiXplorer team

BINARLY efiXplorer team has discovered a memory contents leak / information disclosure vulnerability that allows a potential attacker to dump stack memory or global memory into an NVRAM variable. This in turn could help building a successful attack vector based on exploiting a memory corruption vulnerability.

Read more

[BRLY-2022-121] Memory contents leak / information disclosure vulnerability in DXE driver on Dell platform.

BINARLY efiXplorer team

BINARLY efiXplorer team has discovered a memory contents leak / information disclosure vulnerability that allows a potential attacker to dump stack memory or global memory into an NVRAM variable. This in turn could help building a successful attack vector based on exploiting a memory corruption vulnerability.

Read more

[BRLY-2022-004] SMM arbitrary code execution in USBRT SMM driver on Dell devices.

BINARLY efiXplorer team

BINARLY efiXplorer team has discovered SMM arbitrary code execution on Dell devices.

Read more

[BRLY-2021-045] SMM callout vulnerability in USBRT SMM driver on Dell devices (SMM arbitrary code execution)

BINARLY efiXplorer team

BINARLY efiXplorer team identified SMM callout on Dell platforms, which allows a attacker to access the System Management Mode and execute arbitrary code.

Read more

[BRLY-2021-043] SMM arbitrary code execution in USBRT SMM driver on Dell devices.

BINARLY efiXplorer team

BINARLY efiXplorer team has discovered SMM arbitrary code execution on Dell devices.

Read more