Lucene search

K
cvelistMitreCVELIST:CVE-2022-35895
HistorySep 21, 2022 - 8:36 p.m.

CVE-2022-35895

2022-09-2120:36:15
mitre
www.cve.org
4
insydeh2o
fwblocksericcesmm
vulnerability
memory corruption
arbitrary code execution

EPSS

0.001

Percentile

33.4%

An issue was discovered in Insyde InsydeH2O with kernel 5.0 through 5.5. The FwBlockSericceSmm driver does not properly validate input parameters for a software SMI routine, leading to memory corruption of arbitrary addresses including SMRAM, and possible arbitrary code execution.

EPSS

0.001

Percentile

33.4%

Related for CVELIST:CVE-2022-35895