CVE-2023-39538: Failure when uploading a Logo image file
Published Dec 6, 2023
·Updated
AMI AptioV contains a vulnerability in BIOS where a User may cause an unrestricted upload of a BMP Logo file with dangerous type by Local access. A successful exploit of this vulnerability may lead to a loss of Confidentiality, Integrity, and/or Availability.
Affected Software
1 affected component
AMI Aptio V
Event History
Dec 6, 2023
CVE Published
via MITRE·03:17 PM
Data Sourced
via MITRE·03:17 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-39538?
CVE-2023-39538 is classified as a high severity vulnerability due to the potential loss of confidentiality, integrity, and availability.
2
How do I fix CVE-2023-39538?
To mitigate CVE-2023-39538, it is recommended to apply the latest firmware updates provided by AMI for the Aptio V BIOS.
3
What type of access is required to exploit CVE-2023-39538?
Exploitation of CVE-2023-39538 requires local access to the system.
4
What can be affected by the exploitation of CVE-2023-39538?
Exploitation of CVE-2023-39538 may lead to a loss of confidentiality, integrity, and availability of the system.
5
Which software is impacted by CVE-2023-39538?
CVE-2023-39538 affects the AMI Aptio V BIOS.