Huawei Matebook D16(Model: CREM-WXX9, BIOS: v2.26), As the communication buffer size hasn’t been properly validated to be of the expected size, it can partially overlap with the beginning SMRAM.This can be leveraged by a malicious OS attacker to corrupt data structures stored at the beginning of SMRAM and can potentially lead to code execution in SMM.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-57334 | Huawei Matebook D16(Model: CREM-WXX9, BIOS: v2.26), As the communication buffer size hasn’t been properly validated to be of the expected size, it can partially overlap with the beginning SMRAM.This can be leveraged by a malicious OS attacker to corrupt data structures stored at the beginning of SMRAM and can potentially lead to code execution in SMM. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Sun, 13 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Sat, 12 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Fri, 17 Jan 2025 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Huawei curiem-wfg9b
Huawei curiem-wfg9b Firmware |
|
| CPEs | cpe:2.3:h:huawei:curiem-wfg9b:-:*:*:*:*:*:*:* cpe:2.3:o:huawei:curiem-wfg9b_firmware:ota-curiem-bios-2.29:*:*:*:*:*:*:* |
|
| Vendors & Products |
Huawei curiem-wfg9b
Huawei curiem-wfg9b Firmware |
Status: PUBLISHED
Assigner: huawei
Published:
Updated: 2024-08-02T23:11:35.475Z
Reserved: 2024-03-21T10:20:07.053Z
Link: CVE-2023-52710
Updated: 2024-05-28T13:53:47.565Z
Status : Analyzed
Published: 2024-05-28T07:15:10.100
Modified: 2025-01-17T18:32:39.963
Link: CVE-2023-52710
No data.
OpenCVE Enrichment
No data.
EUVD