CVE-2023-39284
02.11.2023, 21:15
An issue was discovered in IhisiServicesSmm in Insyde InsydeH2O with kernel 5.0 through 5.5. There are arbitrary calls to SetVariable with unsanitized arguments in the SMI handler.Enginsight
Vendor | Product | Version |
---|---|---|
insyde | insydeh2o | 5.2 ≤ 𝑥 < 5.2.05.28.33 |
insyde | insydeh2o | 5.3 ≤ 𝑥 < 5.3.05.37.33 |
insyde | insydeh2o | 5.4 ≤ 𝑥 < 5.4.05.45.33 |
insyde | insydeh2o | 5.5 ≤ 𝑥 < 5.5.05.53.33 |
insyde | insydeh2o | 5.6 ≤ 𝑥 < 5.6.05.60.33 |
𝑥
= Vulnerable software versions