A vulnerability exists in System Management Interrupt (SWSMI) handler of InsydeH2O UEFI Firmware code located in SWSMI handler that dereferences gRT (EFI_RUNTIME_SERVICES) pointer to call a GetVariable service, which is located outside of SMRAM. This can result in code execution in SMM (escalating privilege from ring 0 to ring -2).
References
| Link | Resource |
|---|---|
| https://www.insyde.com/security-pledge | Vendor Advisory |
| https://www.insyde.com/products | Product Vendor Advisory |
| https://cert-portal.siemens.com/productcert/pdf/ssa-306654.pdf | |
| https://security.netapp.com/advisory/ntap-20220222-0005/ |
Configurations
Configuration 1 (hide)
|
Information
Published : 2022-02-03 01:15
Updated : 2022-02-24 15:15
NVD link : CVE-2020-5953
Mitre link : CVE-2020-5953
JSON object : View
Products Affected
insyde
- insydeh2o
CWE
