7.8
CWE
787 20
Advisory Published
Updated

CVE-2022-21933: ASUS VivoMini/Mini PC - improper input validation

First published: Fri Jan 21 2022(Updated: )

ASUS VivoMini/Mini PC device has an improper input validation vulnerability. A local attacker with system privilege can use system management interrupt (SMI) to modify memory, resulting in arbitrary code execution for controlling the system or disrupting service.

Credit: twcert@cert.org.tw twcert@cert.org.tw

Affected SoftwareAffected VersionHow to fix
Asus Vc65-c1 Firmware<1302
Asus Vc65-c1
Asus Pb60v Firmware<1302
Asus Pb60v
Asus Pb60g Firmware<1302
Asus Pb60g
Asus Pb60s Firmware<1302
Asus Pb60s
Asus Pa90 Firmware<1401
Asus Pa90
Asus Pb50 Firmware<902
Asus Pb50
Asus Pb60 Firmware<1502
Asus Pb60
Asus Pb61v Firmware<601
Asus Pb61v
Asus Ts10 Firmware<609
Asus Ts10
Asus Pn40 Firmware<2201
Asus Pn40
Asus Pn60 Firmware<808
Asus Pn60
Asus Pn30 Firmware<320
Asus Pn30
Asus Un65u Firmware<618
Asus Un65u

Remedy

BIOS Update(https://www.asus.com/content/ASUS-Product-Security-Advisory/)

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203