CVE Feed

    Dashboard / CVE / CVE-2021-21556

    CVE-2021-21556

    Dell PowerEdge R640, R740, R740XD, R840, R940, R940xa, MX740c, MX840c, and T640 Server BIOS contain a stack-based buffer overflow vulnerability in systems with NVDIMM-N installed. A local malicious user with high privileges may potentially exploit this vulnerability, leading to a denial of Service, arbitrary code execution, or information disclosure in UEFI or BIOS Preboot Environment.

    Published:Jun 14, 2021
    Last Modified:Nov 21, 2024
    EPS:Jun 14, 2021
    EPSS Score:0.00049
    CVSS Score:6.1

    Affected Products

    Vendor
    Dell
    Product
    Poweredge Mx740c
    Vendor
    Dell
    Product
    Poweredge Mx740c Firmware
    Vendor
    Dell
    Product
    Poweredge Mx840c
    Vendor
    Dell
    Product
    Poweredge Mx840c Firmware
    Vendor
    Dell
    Product
    Poweredge R640
    Vendor
    Dell
    Product
    Poweredge R640 Firmware
    Vendor
    Dell
    Product
    Poweredge R740
    Vendor
    Dell
    Product
    Poweredge R740 Firmware
    Vendor
    Dell
    Product
    Poweredge R740xd
    Vendor
    Dell
    Product
    Poweredge R740xd Firmware
    Vendor
    Dell
    Product
    Poweredge R840
    Vendor
    Dell
    Product
    Poweredge R840 Firmware
    Vendor
    Dell
    Product
    Poweredge R940
    Vendor
    Dell
    Product
    Poweredge R940 Firmware
    Vendor
    Dell
    Product
    Poweredge R940xa
    Vendor
    Dell
    Product
    Poweredge R940xa Firmware
    Vendor
    Dell
    Product
    Poweredge T640
    Vendor
    Dell
    Product
    Poweredge T640 Firmware

    Exploits

    No exploit reference

    Common Attack Pattern Enumeration and Classification (CAPEC)

    No CAPEC recorded yet

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High