Description

A memory corruption vulnerability in StorageSecurityCommandDxe in Insyde InsydeH2O before kernel 5.2: IB19130163 in 05.29.07, kernel 5.3: IB19130163 in 05.38.07, kernel 5.4: IB19130163 in 05.46.07, kernel 5.5: IB19130163 in 05.54.07, and kernel 5.6: IB19130163 in 05.61.07 could lead to escalating privileges in SMM.

INFO

Published Date :

2024-05-15T14:11:01.648Z

Last Modified :

2025-02-13T15:47:09.709Z

Source :

mitre
AFFECTED PRODUCTS

The following products are affected by CVE-2024-25078 vulnerability.

Vendors Products
Insyde
  • Insydeh2o
  • Kernel
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2024-25078.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact