A memory corruption vulnerability in HddPassword in Insyde InsydeH2O kernel 5.2 before 05.29.09, kernel 5.3 before 05.38.09, kernel 5.4 before 05.46.09, kernel 5.5 before 05.54.09, and kernel 5.6 before 05.61.09 could lead to escalating privileges in SMM.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-22441 | A memory corruption vulnerability in HddPassword in Insyde InsydeH2O kernel 5.2 before 05.29.09, kernel 5.3 before 05.38.09, kernel 5.4 before 05.46.09, kernel 5.5 before 05.54.09, and kernel 5.6 before 05.61.09 could lead to escalating privileges in SMM. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Mon, 04 Aug 2025 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:insyde:insydeh2o:*:*:*:*:*:*:*:* |
Sun, 13 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Tue, 29 Oct 2024 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-822 |
Tue, 29 Oct 2024 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Insyde
Insyde insydeh2o |
|
| Weaknesses | CWE-763 | |
| CPEs | cpe:2.3:a:insyde:insydeh2o:5.2:*:*:*:*:*:*:* cpe:2.3:a:insyde:insydeh2o:5.3:*:*:*:*:*:*:* cpe:2.3:a:insyde:insydeh2o:5.4:*:*:*:*:*:*:* cpe:2.3:a:insyde:insydeh2o:5.5:*:*:*:*:*:*:* cpe:2.3:a:insyde:insydeh2o:5.6:*:*:*:*:*:*:* |
|
| Vendors & Products |
Insyde
Insyde insydeh2o |
|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-02-13T15:47:10.262Z
Reserved: 2024-02-04T00:00:00.000Z
Link: CVE-2024-25079
Updated: 2024-08-01T23:36:21.602Z
Status : Analyzed
Published: 2024-05-15T15:15:07.930
Modified: 2025-08-04T14:23:17.420
Link: CVE-2024-25079
No data.
OpenCVE Enrichment
No data.
EUVD