An issue was discovered in iscflashx64.sys 3.9.3.0 in Insyde H2OFFT 6.20.00. When handling IOCTL 0x22229a, the input used to allocate a buffer and copy memory is mishandled. This could cause memory corruption or a system crash.
2023-09-08T02:15:07.503
2024-11-21T06:09:39.220
Modified
CVSSv3.1: 7.1 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | insyde | h2offt | 6.20.00 | Yes |
Application | insyde | iscflashx64.sys | 3.9.3.0 | Yes |