Huawei Matebook D16(Model: CREM-WXX9, BIOS: v2.26), As the communication buffer size hasn’t been properly validated to be of the expected size, it can partially overlap with the beginning SMRAM.This can be leveraged by a malicious OS attacker to corrupt data structures stored at the beginning of SMRAM and can potentially lead to code execution in SMM.
Subscriptions
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-57334 | Huawei Matebook D16(Model: CREM-WXX9, BIOS: v2.26), As the communication buffer size hasn’t been properly validated to be of the expected size, it can partially overlap with the beginning SMRAM.This can be leveraged by a malicious OS attacker to corrupt data structures stored at the beginning of SMRAM and can potentially lead to code execution in SMM. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Sun, 13 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Sat, 12 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Fri, 17 Jan 2025 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Huawei curiem-wfg9b
Huawei curiem-wfg9b Firmware |
|
| CPEs | cpe:2.3:h:huawei:curiem-wfg9b:-:*:*:*:*:*:*:* cpe:2.3:o:huawei:curiem-wfg9b_firmware:ota-curiem-bios-2.29:*:*:*:*:*:*:* |
|
| Vendors & Products |
Huawei curiem-wfg9b
Huawei curiem-wfg9b Firmware |
Status: PUBLISHED
Assigner: huawei
Published:
Updated: 2024-08-02T23:11:35.475Z
Reserved: 2024-03-21T10:20:07.053Z
Link: CVE-2023-52710
Updated: 2024-05-28T13:53:47.565Z
Status : Analyzed
Published: 2024-05-28T07:15:10.100
Modified: 2025-01-17T18:32:39.963
Link: CVE-2023-52710
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD