Description


Failure to validate the communication buffer and communication service in the BIOS may allow an attacker to tamper with the buffer resulting in potential SMM (System Management Mode) arbitrary code execution.

Related CPE's







































































































































































































































































































Weaknesses



CWE-20

134c704f-9b21-4f2e-91b3-4a467353bcc0

Secondary

CWE-20

CVSS impact metrics


CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

7.8 · High

Information


Source identifier

[email protected]

Vulnerability status

Modified

Published

2023-01-11T07:15:10.243Z

3 years ago

Last modified

2025-04-09T14:15:16.977Z

11 months ago