1 results (0.001 seconds)

CVSS: 7.1EPSS: 0%CPEs: 1EXPL: 0

An issue was discovered in InsydeH2O. A malicious operating system can tamper with a runtime-writable EFI variable, leading to out-of-bounds memory reads and a denial of service. This is fixed in version 01.01.04.0016. • https://www.insyde.com/security-pledge https://www.insyde.com/security-pledge/SA-2023028 • CWE-125: Out-of-bounds Read •