Dell Firmware Update (MINDBREEZE28452)

ID: MINDBREEZE28452 
Affected Components: Mindbreeze InSpire, Mindbreeze InSpire SaaS 
Severity: 6.3 Medium 
Status: Final 
First published: February 8, 2024 
CVEs: CVE-2022-40982, CVE-2022-43505 

Summary

  • Gather Data Sampling (GDS) (also known as “Downfall”) is a transient execution side-channel vulnerability 
  • Insufficient control flow management in the BIOS firmware 

 

Hotfix Information

Fixed with following versions of Mindbreeze InSpire On-Premises or Mindbreeze InSpire SaaS: 

  • Mindbreeze InSpire 23.6 Release 
  • Mindbreeze InSpire SaaS 23.6 Release