CVE-2021-43614: VariableEditSmm: Error checking of UEFI variables could cause buffer overflow, leading to code execution
Published Sep 3, 2026
·Updated
Error in handling the PlatformLangCodes UEFI variable could cause a buffer overflow, leading to resource exhaustion and failure.
Event History
Sep 3, 2026
CVE Published
via MITRE·02:15 AM
Data Sourced
via MITRE·02:15 AM
DescriptionSeverity
Frequently Asked Questions
1
What level of access does an attacker need to exploit this issue?
The supplied vector indicates physical access, high privileges, user interaction, and high attack complexity are required. This is not described as remotely exploitable over a network.
2
What security impact is indicated if exploitation succeeds?
The vector indicates high confidentiality and integrity impact, with low availability impact, and a changed scope. The description also identifies resource exhaustion and failure as possible outcomes.