April 11, 2023, 10:15 p.m. |

National Vulnerability Database web.nvd.nist.gov

An issue was discovered in IhisiSmm in Insyde InsydeH2O with kernel 5.0 through 5.5. It is possible to write to an attacker-controlled address. An attacker could invoke an SMI handler with a malformed pointer in RCX that overlaps SMRAM, resulting in SMM memory corruption.

address corruption cve insyde issue kernel malformed memory memory corruption

Information Security Engineers

@ D. E. Shaw Research | New York City

Technology Security Analyst

@ Halton Region | Oakville, Ontario, Canada

Senior Cyber Security Analyst

@ Valley Water | San Jose, CA

Senior Director, Risk Compliance & Trust (GRC)

@ Snyk | Boston, London

Working Student (f/m/d) - Security Architecture Project Management & Communications

@ SAP | Walldorf, DE, 69190

Werkstudent Cyber Security (w/m/x)

@ BMW Group | München, DE