Stack overflow vulnerability in Aspire E5-475G 's BIOS firmware, in the FpGui module, a second call to GetVariable services allows local attackers to execute arbitrary code in the UEFI DXE phase and gain escalated privileges.
2023-02-16T20:15:15.110
2025-03-19T15:15:40.463
Modified
CVSSv3.1: 7.8 (HIGH)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Operating System | acer | aspire_e5-475g_firmware | 1.21 | Yes |
| Hardware | acer | aspire_e5-475g | - | No |