An issue was discovered in ChipsetSvcSmm in Insyde InsydeH2O with kernel 5.0 through 5.5. There is insufficient input validation in BIOS Guard updates. An attacker can induce memory corruption in SMM by supplying malformed inputs to the BIOS Guard SMI handler.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2023-04-11T00:00:00

Updated: 2024-08-02T10:13:49.446Z

Reserved: 2023-01-04T00:00:00

Link: CVE-2023-22614

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2023-04-11T21:15:17.680

Modified: 2023-08-14T18:21:21.537

Link: CVE-2023-22614

cve-icon Redhat

No data.