Description
ASUS VivoMini/Mini PC device has an improper input validation vulnerability. A local attacker with system privilege can use system management interrupt (SMI) to modify memory, resulting in arbitrary code execution for controlling the system or disrupting service.
Published: 2022-01-21
Score: 6.7 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

Vendor Solution

BIOS Update(https://www.asus.com/content/ASUS-Product-Security-Advisory/)

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2022-27089 ASUS VivoMini/Mini PC device has an improper input validation vulnerability. A local attacker with system privilege can use system management interrupt (SMI) to modify memory, resulting in arbitrary code execution for controlling the system or disrupting service.
History

No history.

Subscriptions

Asus Pa90 Pa90 Firmware Pb50 Pb50 Firmware Pb60 Pb60 Firmware Pb60g Pb60g Firmware Pb60s Pb60s Firmware Pb60v Pb60v Firmware Pb61v Pb61v Firmware Pn30 Pn30 Firmware Pn40 Pn40 Firmware Pn60 Pn60 Firmware Ts10 Ts10 Firmware Un65u Un65u Firmware Vc65-c1 Vc65-c1 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: twcert

Published:

Updated: 2024-09-16T20:06:36.122Z

Reserved: 2021-12-14T00:00:00.000Z

Link: CVE-2022-21933

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-01-21T09:15:06.820

Modified: 2024-11-21T06:45:44.113

Link: CVE-2022-21933

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses