logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2023-22616

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2023-22616

Description:
An issue was discovered in Insyde InsydeH2O with kernel 5.2 through 5.5. The Save State register is not checked before use. The IhisiSmm driver does not check the value of a save state register before use. Due to insufficient input validation, an attacker can corrupt SMRAM.
Last updated date:
04/20/2023
Type:
exploit
Confidence:
HIGH
Date of publishing:
04/20/2023
Reference url to background

https://research.nccgroup.com/2023/04/11/stepping-insyde-system-management-mode/

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2024

Privacy Policy