CVE-2025-29989

Dell Client Platform BIOS contains a Security Version Number Mutable to Older Versions vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to BIOS upgrade denial.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:dell:precision_5820_tower_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:precision_5820_tower:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:dell:precision_7820_tower_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:precision_7820_tower:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:dell:precision_7920_tower_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:precision_7920_tower:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:dell:precision_7865_tower_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:precision_7865_tower:-:*:*:*:*:*:*:*

History

18 Aug 2025, 12:42

Type Values Removed Values Added
References () https://www.dell.com/support/kbdoc/en-us/000250131/dsa-2025-016 - () https://www.dell.com/support/kbdoc/en-us/000250131/dsa-2025-016 - Vendor Advisory
CPE cpe:2.3:h:dell:precision_7920_tower:-:*:*:*:*:*:*:*
cpe:2.3:o:dell:precision_7920_tower_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:precision_5820_tower:-:*:*:*:*:*:*:*
cpe:2.3:o:dell:precision_5820_tower_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:precision_7865_tower:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:precision_7820_tower:-:*:*:*:*:*:*:*
cpe:2.3:o:dell:precision_7865_tower_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:dell:precision_7820_tower_firmware:*:*:*:*:*:*:*:*
First Time Dell
Dell precision 5820 Tower Firmware
Dell precision 5820 Tower
Dell precision 7820 Tower Firmware
Dell precision 7920 Tower
Dell precision 7865 Tower Firmware
Dell precision 7865 Tower
Dell precision 7820 Tower
Dell precision 7920 Tower Firmware

11 Apr 2025, 15:40

Type Values Removed Values Added
Summary
  • (es) Dell Client Platform BIOS contiene una vulnerabilidad de número de versión de seguridad mutable a versiones anteriores. Un atacante con altos privilegios y acceso local podría potencialmente explotar esta vulnerabilidad, provocando la denegación de la actualización del BIOS.

10 Apr 2025, 02:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-04-10 02:15

Updated : 2025-08-18 12:42


NVD link : CVE-2025-29989

Mitre link : CVE-2025-29989

CVE.ORG link : CVE-2025-29989


JSON object : View

Products Affected

dell

  • precision_7920_tower_firmware
  • precision_7865_tower_firmware
  • precision_7920_tower
  • precision_5820_tower_firmware
  • precision_7865_tower
  • precision_7820_tower
  • precision_7820_tower_firmware
  • precision_5820_tower
CWE
CWE-1328

Security Version Number Mutable to Older Versions