Vulnerabilities
Vulnerable Software
Insyde:  >> Insydeh2o  >> 05.53.01  Security Vulnerabilities
A memory corruption vulnerability in HddPassword in Insyde InsydeH2O kernel 5.2 before 05.29.09, kernel 5.3 before 05.38.09, kernel 5.4 before 05.46.09, kernel 5.5 before 05.54.09, and kernel 5.6 before 05.61.09 could lead to escalating privileges in SMM.
CVSS Score
7.4
EPSS Score
0.001
Published
2024-05-15
An issue was discovered in IhisiSmm in Insyde InsydeH2O with kernel 5.0 through 5.5. A malicious host OS can invoke an Insyde SMI handler with malformed arguments, resulting in memory corruption in SMM.
CVSS Score
8.8
EPSS Score
0.002
Published
2023-04-11
An issue was discovered in IhisiSmm in Insyde InsydeH2O with kernel 5.0 through 5.5. IHISI subfunction execution may corrupt SMRAM. An attacker can pass an address in the RCX save state register that overlaps SMRAM, thereby coercing an IHISI subfunction handler to overwrite private SMRAM.
CVSS Score
8.4
EPSS Score
0.002
Published
2023-04-11


Contact Us

Shodan ® - All rights reserved