Description
SMM IHISI command handler, FMTSWriteUseIntelLib, for FMTS command 0x32, read and write data without checking buffer size and could cause buffer overflow.
Published: 2026-08-26
Score: 2.7 Low
EPSS: < 1% Very Low
KEV: No
Impact: Buffer Overflow in Firmware
Action: Update Firmware
AI Analysis

Impact

The FMTSWriteUseIntelLib routine in the SMM IHISI command handler processes FMTS command 0x32 without checking the size of data it reads or writes. This omission can overflow an internal buffer, corrupting adjacent memory and potentially compromising firmware integrity or causing a crash. The flaw resides entirely in privileged firmware code, and the CVSS score of 2.7 indicates limited impact under most conditions.

Affected Systems

InsydeH2O firmware installed on Intel‑based laptops, servers, and embedded devices is affected. The vulnerability requires firmware‑level privileged execution. The vendor’s official fix comprises Intel firmware updates – for mobile platforms use the specific version numbers listed (for example WildCat Lake 05.72.18.0010, Panther Lake 05.72.17.0032, Luna Lake 05.62.29.0038, etc.), and for server/embedded platforms update to the latest trunk firmware from Intel. Users should verify their device’s firmware platform and apply the corresponding Intel update described in Intel’s Mobile or Server/Embedded update catalog.

Risk and Exploitability

The CVSS score of 2.7 and the absence of an EPSS rating indicate a low‑severity flaw, and it is not listed in the CISA KEV catalog. Exploitation would require local or privileged access to the device to invoke the vulnerable firmware command, typically via the firmware update interface or another privileged tool. Under these constraints the threat is modest, but applying the available firmware update is strongly recommended to eliminate the risk of buffer corruption.

Generated by OpenCVE AI on August 26, 2026 at 03:21 UTC.

Remediation

Vendor Solution

Intel Mobile platforms: WildCat Lake: Version 05.72.18.0010 Panther Lake: Version 05.72.17.0032 Lunar Lake: Version 05.62.29.0038 Aarow Lake-H/U: Version 05.56.23.0022 Aarow Lake-S/HX: Version 05.56.23.0037 Raptor Lake: Version Tag 05.47.24.0058 Twin Lake: Version Tag 05.44.45.0029 Intel Server/Embedded platforms: Mehlow/Mehlow-R(CFL-S): Trunk Tatlow (RKS): Trunk WhiskeyLake: Trunk CometLake-S: Trunk TigerLake UP3/H: Trunk AlderLake: Trunk Raptor Lake: Trunk Meteor Lake-U/H: Trunk Meteor Lake-PS: Trunk Arrow Lake-S: Trunk Arrow Lake-U/H: Trunk ElkhartLake: Trunk Alder Lake N: Trunk AmstonLake: Trunk TwinLake: Trunk


OpenCVE Recommended Actions

  • Verify the current firmware version and identify the device platform (mobile, server, or embedded).
  • Download the latest Intel firmware update matching the platform and version listed in the Intel Mobile or Server/Embedded firmware update catalog.
  • Apply the firmware update following Intel’s documented flashing procedure, ensuring you use the signed, authentic image.
  • If your platform’s firmware update is not yet available, monitor Intel’s official firmware releases and schedule the update during a maintenance window.

Generated by OpenCVE AI on August 26, 2026 at 03:21 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Fri, 28 Aug 2026 21:00:00 +0000

Type Values Removed Values Added
First Time appeared Insyde
Insyde insydeh2o
Vendors & Products Insyde
Insyde insydeh2o

Wed, 26 Aug 2026 18:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 26 Aug 2026 01:15:00 +0000

Type Values Removed Values Added
Description SMM IHISI command handler, FMTSWriteUseIntelLib, for FMTS command 0x32, read and write data without checking buffer size and could cause buffer overflow.
Title FMTSWriteUseIntelLib: FMTS SMM IHISI Buffer Overflow
Weaknesses CWE-787
References
Metrics cvssV3_1

{'score': 2.7, 'vector': 'CVSS:3.1/AV:P/AC:H/PR:H/UI:R/S:U/C:N/I:L/A:L'}


Subscriptions

Insyde Insydeh2o
cve-icon MITRE

Status: PUBLISHED

Assigner: Insyde

Published:

Updated: 2026-08-26T15:29:45.529Z

Reserved: 2026-05-28T06:24:59.358Z

Link: CVE-2026-9805

cve-icon Vulnrichment

Updated: 2026-08-26T15:29:37.172Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-08-26T05:18:28.547

Modified: 2026-08-31T19:27:23.020

Link: CVE-2026-9805

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-28T20:33:59Z

Weaknesses