Huawei Matebook D16(Model: CREM-WXX9, BIOS: v2.26) Arbitrary Memory Corruption in SMI Handler of ThisiServicesSmm SMM module. This can be leveraged by a malicious OS attacker to corrupt arbitrary SMRAM memory and, in turn, lead to code execution in SMM
References
Configurations
Configuration 1 (hide)
AND |
|
History
17 Jan 2025, 18:31
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-787 | |
References | () https://www.huawei.com/cn/psirt/security-advisories/2024/huawei-sa-hppvtiroowtboamb-bb3261bd-cn - Vendor Advisory | |
References | () https://www.huawei.com/en/psirt/security-advisories/2024/huawei-sa-hppvtiroowtboamb-bb3261bd-en - Vendor Advisory | |
First Time |
Huawei curiem-wfg9b
Huawei Huawei curiem-wfg9b Firmware |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.8 |
CPE | cpe:2.3:o:huawei:curiem-wfg9b_firmware:ota-curiem-b-bios-2.28:*:*:*:*:*:*:* cpe:2.3:h:huawei:curiem-wfg9b:-:*:*:*:*:*:*:* |
28 May 2024, 07:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-05-28 07:15
Updated : 2025-01-17 18:31
NVD link : CVE-2023-52548
Mitre link : CVE-2023-52548
JSON object : View
Products Affected
huawei
- curiem-wfg9b_firmware
- curiem-wfg9b
CWE
CWE-787
Out-of-bounds Write