ZeroHour

CVE-2024-25079

CVSS 3.1
7.4 high
EPSS
<1%p4
Published
()
Modified
Description

A memory corruption vulnerability in HddPassword in Insyde InsydeH2O kernel 5.2 before 05.29.09, kernel 5.3 before 05.38.09, kernel 5.4 before 05.46.09, kernel 5.5 before 05.54.09, and kernel 5.6 before 05.61.09 could lead to escalating privileges in SMM.

Vendors
insyde
Products
insydeh2o
Weakness
CWE-763
Vector
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:L

In the news

No ingested article mentions this CVE yet.