Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7r5c-r5ww-995h

Опубликовано: 12 авг. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

Improper validation in a model specific register (MSR) could allow a malicious program with ring0 access to modify SMM configuration while SMI lock is enabled, potentially leading to arbitrary code execution.

Improper validation in a model specific register (MSR) could allow a malicious program with ring0 access to modify SMM configuration while SMI lock is enabled, potentially leading to arbitrary code execution.

EPSS

Процентиль: 44%
0.00212
Низкий

7.5 High

CVSS3

Дефекты

CWE-94

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 1 года назад

Improper validation in a model specific register (MSR) could allow a malicious program with ring0 access to modify SMM configuration while SMI lock is enabled, potentially leading to arbitrary code execution.

CVSS3: 7.5
redhat
около 1 года назад

Improper validation in a model specific register (MSR) could allow a malicious program with ring0 access to modify SMM configuration while SMI lock is enabled, potentially leading to arbitrary code execution.

CVSS3: 7.5
nvd
около 1 года назад

Improper validation in a model specific register (MSR) could allow a malicious program with ring0 access to modify SMM configuration while SMI lock is enabled, potentially leading to arbitrary code execution.

CVSS3: 7.5
debian
около 1 года назад

Improper validation in a model specific register (MSR) could allow a m ...

suse-cvrf
8 месяцев назад

Security update for kernel-firmware

EPSS

Процентиль: 44%
0.00212
Низкий

7.5 High

CVSS3

Дефекты

CWE-94