8.8
CVSSv3

CVE-2023-22612

Published: 11/04/2023 Updated: 14/08/2023
CVSS v3 Base Score: 8.8 | Impact Score: 6 | Exploitability Score: 2
VMScore: 0

Vulnerability Summary

An issue exists in IhisiSmm in Insyde InsydeH2O with kernel 5.0 up to and including 5.5. A malicious host OS can invoke an Insyde SMI handler with malformed arguments, resulting in memory corruption in SMM.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

insyde insydeh2o 05.28.03

insyde insydeh2o 05.37.03

insyde insydeh2o 05.45.01

insyde insydeh2o 05.53.01

insyde insydeh2o 05.0a.11

insyde insydeh2o 05.18.03