This SMM vulnerability affects certain modules, allowing privileged attackers to execute arbitrary code, manipulate stack memory, and leak information from SMRAM to kernel space, potentially leading to denial-of-service attacks.
History

Thu, 22 Aug 2024 01:30:00 +0000

Type Values Removed Values Added
First Time appeared Ami
Ami aptio V
CPEs cpe:2.3:o:ami:aptio_v:*:*:*:*:*:*:*:*
Vendors & Products Ami
Ami aptio V
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 21 Aug 2024 16:30:00 +0000

Type Values Removed Values Added
Description This SMM vulnerability affects certain modules, allowing privileged attackers to execute arbitrary code, manipulate stack memory, and leak information from SMRAM to kernel space, potentially leading to denial-of-service attacks.
Title Smm Callout in SmmComputrace Module
Weaknesses CWE-20
References
Metrics cvssV3_1

{'score': 7.8, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: AMI

Published: 2024-08-21T16:17:12.383Z

Updated: 2024-08-22T00:40:11.707Z

Reserved: 2024-04-25T13:29:51.809Z

Link: CVE-2024-33657

cve-icon Vulnrichment

Updated: 2024-08-21T16:48:13.500Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-08-21T17:15:07.777

Modified: 2024-08-21T17:24:59.627

Link: CVE-2024-33657

cve-icon Redhat

No data.