Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-30771


Initialization function in PnpSmm could lead to SMRAM corruption when using subsequent PNP SMI functions Initialization function in PnpSmm could lead to SMRAM corruption when using subsequent PNP SMI functions. This issue was discovered by Insyde engineering during a security review. Fixed in: Kernel 5.1: Version 05.17.25 Kernel 5.2: Version 05.27.25 Kernel 5.3: Version 05.36.25 Kernel 5.4: Version 05.44.25 Kernel 5.5: Version 05.52.25 https://www.insyde.com/security-pledge/SA-2022064


Published

2022-11-15T21:15:36.910

Last Modified

2025-04-30T16:15:21.247

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 8.2 (HIGH)

Weaknesses
  • Type: Primary
    CWE-787
  • Type: Secondary
    CWE-787

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System insyde kernel < 5.1.05.17.25 Yes
Operating System insyde kernel < 5.2.05.27.25 Yes
Operating System insyde kernel < 5.3.05.36.25 Yes
Operating System insyde kernel < 5.4.05.44.25 Yes
Operating System insyde kernel < 5.5.05.52.25 Yes

References