NA

CVE-2023-22614

Published: 11/04/2023 Updated: 14/08/2023
CVSS v3 Base Score: 8.8 | Impact Score: 6 | Exploitability Score: 2
VMScore: 0

Vulnerability Summary

An issue exists in ChipsetSvcSmm in Insyde InsydeH2O with kernel 5.0 up to and including 5.5. There is insufficient input validation in BIOS Guard updates. An attacker can induce memory corruption in SMM by supplying malformed inputs to the BIOS Guard SMI handler.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

insyde insydeh2o 05.44.45.0028

insyde insydeh2o 05.44.45.0015

insyde insydeh2o 05.44.34.0054

insyde insydeh2o 05.42.52.0026

insyde insydeh2o 05.43.12.0056

insyde insydeh2o 05.43.01.0026