NA

CVE-2023-27373

Published: 07/08/2023 Updated: 15/08/2023
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

An issue exists in Insyde InsydeH2O with kernel 5.0 up to and including 5.5. Due to insufficient input validation, an attacker can tamper with a runtime-accessible EFI variable to cause a dynamic BAR setting to overlap SMRAM.

Vulnerable Product Search on Vulmon Subscribe to Product

insyde insydeh2o 5.0

insyde insydeh2o 5.1

insyde insydeh2o 5.2

insyde insydeh2o 5.3

insyde insydeh2o 5.4

insyde insydeh2o 5.5