Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2021-33834


An issue was discovered in iscflashx64.sys 3.9.3.0 in Insyde H2OFFT 6.20.00. When handling IOCTL 0x22229a, the input used to allocate a buffer and copy memory is mishandled. This could cause memory corruption or a system crash.


Published

2023-09-08T02:15:07.503

Last Modified

2024-11-21T06:09:39.220

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.1 (HIGH)

Weaknesses
  • Type: Primary
    CWE-787

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application insyde h2offt 6.20.00 Yes
Application insyde iscflashx64.sys 3.9.3.0 Yes

References