CVE-2022-32266
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
DMA attacks on the parameter buffer used by a software SMI handler used by the driver PcdSmmDxe could lead to a TOCTOU attack on the SMI handler and lead to corruption of other ACPI fields and adjacent memory fields. DMA attacks on the parameter buffer used by a software SMI handler used by the driver PcdSmmDxe could lead to a TOCTOU attack on the SMI handler and lead to corruption of other ACPI fields and adjacent memory fields. The attack would require detailed knowledge of the PCD database contents on the current platform. This issue was discovered by Insyde engineering during a security review. This issue is fixed in Kernel 5.3: 05.36.23, Kernel 5.4: 05.44.23, Kernel 5.5: 05.52.23. Kernel 5.2 is unaffected. CWE-787 An issue was discovered in Insyde InsydeH2O with kernel 5.0 through 5.5. DMA attacks on the parameter buffer that is used by a software SMI handler (used by the PcdSmmDxe driver) could lead to a TOCTOU race-condition attack on the SMI handler, and lead to corruption of other ACPI fields and adjacent memory fields. The attack would require detailed knowledge of the PCD database contents on the current platform.
Los ataques DMA al búfer de parámetros utilizado por un controlador SMI de software utilizado por el controlador PcdSmmDxe podrían provocar un ataque TOCTOU al controlador SMI y provocar la corrupción de otros campos ACPI y campos de memoria adyacentes.
Los ataques DMA al búfer de parámetros utilizado por un controlador SMI de software utilizado por el controlador PcdSmmDxe podrían provocar un ataque TOCTOU al controlador SMI y provocar la corrupción de otros campos ACPI y campos de memoria adyacentes.
El ataque requeriría un conocimiento detallado del contenido de la base de datos PCD en la plataforma actual. Este problema fue descubierto por la ingeniería de Insyde durante una revisión de seguridad. Este problema se solucionó en:
Kernel 5.3: 05.36.23
Kernel 5.4: 05.44.23
Kernel 5.5: 05.52.23.
El kernel 5.2 no se ve afectado.
CWE-787 Se descubrió un problema en Insyde InsydeH2O con el kernel 5.0 a 5.5. Los ataques DMA al búfer de parámetros que utiliza un controlador SMI de software (usado por el controlador PcdSmmDxe) podrían provocar un ataque de condición de ejecución TOCTOU en el controlador SMI y provocar la corrupción de otros campos ACPI y campos de memoria adyacentes. El ataque requeriría un conocimiento detallado del contenido de la base de datos PCD en la plataforma actual.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2022-06-03 CVE Reserved
- 2022-11-14 CVE Published
- 2024-06-06 EPSS Updated
- 2024-08-03 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-787: Out-of-bounds Write
CAPEC
References (2)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://www.insyde.com/security-pledge | 2023-08-08 | |
https://www.insyde.com/security-pledge/SA-2022045 | 2023-08-08 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Insyde Search vendor "Insyde" | Kernel Search vendor "Insyde" for product "Kernel" | >= 5.3 < 5.3.05.36.23 Search vendor "Insyde" for product "Kernel" and version " >= 5.3 < 5.3.05.36.23" | - |
Affected
| ||||||
Insyde Search vendor "Insyde" | Kernel Search vendor "Insyde" for product "Kernel" | >= 5.4 < 5.4.05.44.23 Search vendor "Insyde" for product "Kernel" and version " >= 5.4 < 5.4.05.44.23" | - |
Affected
| ||||||
Insyde Search vendor "Insyde" | Kernel Search vendor "Insyde" for product "Kernel" | >= 5.5 < 5.5.05.52.23 Search vendor "Insyde" for product "Kernel" and version " >= 5.5 < 5.5.05.52.23" | - |
Affected
|