CVE-2022-28806: High severity fujitsu lifebook a3510 firmware vulnerability
An issue was discovered on certain Fujitsu LIEFBOOK devices (A3510, U9310, U7511/U7411/U7311, U9311, E5510/E5410, U7510/U7410/U7310, E459/E449) with BIOS versions before v1.09 (A3510), v2.17 (U9310), v2.30 (U7511/U7411/U7311), v2.33 (U9311), v2.23 (E5510), v2.19 (U7510/U7410), v2.13 (U7310), and v1.09 (E459/E449). The FjGabiFlashCoreAbstractionSmm driver registers a Software System Management Interrupt (SWSMI) handler that is not sufficiently validated to ensure that the CommBuffer (or any other communication buffer's nested contents) are not pointing to SMRAM contents. A potential attacker can therefore write fixed data to SMRAM, which could lead to data corruption inside this memory (e.g., change the SMI handler's code or modify SMRAM map structures to break input pointer validation for other SMI handlers). Thus, the attacker could elevate privileges from ring 0 to ring -2 and execute arbitrary code in SMM.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-28806?
CVE-2022-28806 is a vulnerability found in certain Fujitsu LIEFBOOK devices with outdated BIOS versions.
Which devices are affected by CVE-2022-28806?
Certain Fujitsu LIEFBOOK devices including A3510, U9310, U7511/U7411/U7311, U9311, E5510/E5410, U7510/U7410/U7310, E459/E449 are affected by CVE-2022-28806.
How severe is CVE-2022-28806?
CVE-2022-28806 has a severity rating of 7.8, which is considered high.
How can I check if my device is vulnerable to CVE-2022-28806?
You can check if your device is vulnerable to CVE-2022-28806 by verifying the BIOS version against the affected versions mentioned in the vulnerability description.
How do I fix CVE-2022-28806?
To fix CVE-2022-28806, you need to update the BIOS of your Fujitsu LIEFBOOK device to the specified versions or later provided by Fujitsu.