René Helmke 7791f18b51 bootstrap
2023-05-16 16:09:41 +02:00

28 lines
932 B
JSON

{
"id": "CVE-2023-22613",
"sourceIdentifier": "cve@mitre.org",
"published": "2023-04-11T22:15:07.660",
"lastModified": "2023-04-12T12:44:03.063",
"vulnStatus": "Undergoing Analysis",
"descriptions": [
{
"lang": "en",
"value": "An issue was discovered in IhisiSmm in Insyde InsydeH2O with kernel 5.0 through 5.5. It is possible to write to an attacker-controlled address. An attacker could invoke an SMI handler with a malformed pointer in RCX that overlaps SMRAM, resulting in SMM memory corruption."
}
],
"metrics": {},
"references": [
{
"url": "https://research.nccgroup.com/2023/04/11/stepping-insyde-system-management-mode/",
"source": "cve@mitre.org"
},
{
"url": "https://www.insyde.com/security-pledge",
"source": "cve@mitre.org"
},
{
"url": "https://www.insyde.com/security-pledge/SA-2023023",
"source": "cve@mitre.org"
}
]
}