An issue was discovered in IhisiSmm in Insyde InsydeH2O with kernel 5.0 through 5.5. IHISI subfunction execution may corrupt SMRAM. An attacker can pass an address in the RCX save state register that overlaps SMRAM, thereby coercing an IHISI subfunction handler to overwrite private SMRAM.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2023-04-11T00:00:00

Updated: 2024-08-02T10:13:49.464Z

Reserved: 2023-01-04T00:00:00

Link: CVE-2023-22615

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2023-04-11T21:15:17.733

Modified: 2023-08-14T18:21:21.537

Link: CVE-2023-22615

cve-icon Redhat

No data.