CVE-2025-22830: SmiFlash Race Condition Vulnerability
Published Aug 12, 2025
·Updated
APTIOV contains a vulnerability in BIOS where a skilled user may cause “Race Condition” by local access. A successful exploitation of this vulnerability may lead to resource exhaustion and impact Confidentiality, Integrity, and Availability.
Affected Software
2 affected components
APTIOV SmiFlash
AMI Aptio V<5.040
Event History
Aug 12, 2025
CVE Published
via MITRE·02:02 PM
Data Sourced
via MITRE·02:02 PM
DescriptionWeakness
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-22830?
The severity of CVE-2025-22830 is significant as it allows for a race condition that can lead to resource exhaustion.
2
How do I fix CVE-2025-22830?
To fix CVE-2025-22830, ensure that your BIOS is updated to the latest version provided by APTIOV.
3
What are the potential impacts of CVE-2025-22830?
The potential impacts of CVE-2025-22830 include threats to Confidentiality, Integrity, and Availability of the system.
4
Who is affected by CVE-2025-22830?
CVE-2025-22830 affects systems using APTIOV's SmiFlash BIOS that may be accessible to skilled users.
5
Can CVE-2025-22830 be exploited remotely?
No, CVE-2025-22830 requires local access to the system for exploitation.