Home

Description

A memory corruption vulnerability in HddPassword in Insyde InsydeH2O kernel 5.2 before 05.29.09, kernel 5.3 before 05.38.09, kernel 5.4 before 05.46.09, kernel 5.5 before 05.54.09, and kernel 5.6 before 05.61.09 could lead to escalating privileges in SMM.

PUBLISHED Reserved 2024-02-04 | Published 2024-05-15 | Updated 2025-02-13 | Assigner mitre

References

www.insyde.com/security-pledge

www.insyde.com/security-pledge/SA-2024001

cve.org (CVE-2024-25079)

nvd.nist.gov (CVE-2024-25079)

Download JSON