CVE-2023-39283 Information
Nov 03, 2023
cve
Description
An SMM memory corruption vulnerability in the SMM driver (SMRAM write) in CsmInt10HookSmm in Insyde InsydeH2O with kernel 5.0 through 5.5 allows attackers to send arbitrary data to SMM which could lead to privilege escalation.
Reference
https://www.insyde.com/security-pledge https://www.insyde.com/security-pledge/SA-2023055
Share on: