CVE-2023-52710 Information

Description

Huawei Matebook D16(Model: CREM-WXX9 BIOS: v2.26) As the communication buffer size hasn’t been properly validated to be of the expected size it can partially overlap with the beginning SMRAM.This can be leveraged by a malicious OS attacker to corrupt data structures stored at the beginning of SMRAM and can potentially lead to code execution in SMM.

Reference

https://www.huawei.com/en/psirt/security-advisories/2024/huawei-sa-hppvticfuoec-8ffde288-en

Share on: