First published: Thu Feb 03 2022(Updated: )
A vulnerability exists in System Management Interrupt (SWSMI) handler of InsydeH2O UEFI Firmware code located in SWSMI handler that dereferences gRT (EFI_RUNTIME_SERVICES) pointer to call a GetVariable service, which is located outside of SMRAM. This can result in code execution in SMM (escalating privilege from ring 0 to ring -2).
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Insyde InsydeH2O UEFI BIOS | =5.12.09.0074 | |
Insyde InsydeH2O UEFI BIOS | =5.23.04.0045 | |
Insyde InsydeH2O UEFI BIOS | =5.23.45.0023 | |
Insyde InsydeH2O UEFI BIOS | =5.33.15.0034 | |
Insyde InsydeH2O UEFI BIOS | =5.34.03.0029 | |
Insyde InsydeH2O UEFI BIOS | =5.42.03.0010 | |
Siemens Ruggedcom APE1808 | ||
Siemens Ruggedcom APE1808 Firmware | ||
siemens simatic field pg m6 firmware | ||
siemens simatic field pg m6 | ||
siemens simatic ipc127e firmware | ||
siemens simatic ipc127e | ||
Siemens Simatic IPC227G | ||
Siemens Simatic IPC227G Firmware | ||
Siemens Simatic IPC277G | ||
Siemens Simatic IPC277G | ||
Siemens Simatic ITP1000 | ||
Siemens Simatic ITP1000 Firmware | ||
Siemens Simatic IPC477E Pro | ||
Siemens Simatic IPC477E Firmware | ||
siemens simatic ipc627e firmware | ||
siemens simatic ipc627e | ||
siemens simatic ipc647e firmware | ||
siemens simatic ipc647e | ||
siemens simatic ipc677e firmware | ||
siemens simatic ipc677e | ||
siemens simatic ipc847e firmware | ||
siemens simatic ipc847e | ||
Siemens Simatic IPC327G Firmware | ||
Siemens Simatic IPC327G Firmware | ||
Siemens Simatic IPC377G | ||
Siemens Simatic IPC377G | ||
Siemens Simatic IPC427E Firmware | ||
Siemens Simatic IPC427E Firmware | ||
Siemens Simatic IPC477E Firmware | ||
Siemens Simatic IPC477E Firmware | ||
Siemens Simatic Field PG M5 | ||
Siemens Simatic Field PG M5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2020-5953.
The affected software includes InsydeH2O UEFI Firmware versions 5.12.09.0074, 5.23.04.0045, 5.23.45.0023, 5.33.15.0034, 5.34.03.0029, and 5.42.03.0010.
The severity of CVE-2020-5953 is high, with a CVSS score of 7.5.
This vulnerability allows an attacker to execute arbitrary code in SMM (System Management Mode) by exploiting a vulnerability in the System Management Interrupt (SWSMI) handler of InsydeH2O UEFI Firmware.
Yes, it is recommended to update to the latest version of InsydeH2O UEFI Firmware to mitigate this vulnerability.