Show filters
2,092 Total Results
Displaying 161-170 of 2,092
Sort by:
Attacker Value
Unknown

CVE-2023-52711

Disclosure Date: May 28, 2024 (last updated January 18, 2025)
Various Issues Due To Exposed SMI Handler in AmdPspP2CmboxV2. The first issue can be leveraged to bypass the protections that have been put in place by previous UEFI phases to prevent direct access to the SPI flash. The second issue can be used to both leak and corrupt SMM memory thus potentially leading code execution in SMM
Attacker Value
Unknown

CVE-2023-52710

Disclosure Date: May 28, 2024 (last updated January 18, 2025)
Huawei Matebook D16(Model: CREM-WXX9, BIOS: v2.26), As the communication buffer size hasn’t been properly validated to be of the expected size, it can partially overlap with the beginning SMRAM.This can be leveraged by a malicious OS attacker to corrupt data structures stored at the beginning of SMRAM and can potentially lead to code execution in SMM.
Attacker Value
Unknown

CVE-2023-52548

Disclosure Date: May 28, 2024 (last updated January 18, 2025)
Huawei Matebook D16(Model: CREM-WXX9, BIOS: v2.26) Arbitrary Memory Corruption in SMI Handler of ThisiServicesSmm SMM module. This can be leveraged by a malicious OS attacker to corrupt arbitrary SMRAM memory and, in turn, lead to code execution in SMM
Attacker Value
Unknown

CVE-2023-52547

Disclosure Date: May 28, 2024 (last updated January 18, 2025)
Huawei Matebook D16(Model: CREM-WXX9, BIOS: v2.26. Memory Corruption in SMI Handler of HddPassword SMM Module. This can be leveraged by a malicious OS attacker to corrupt data structures stored at the beginning of SMRAM and can potentially lead to code execution in SMM.
Attacker Value
Unknown

CVE-2022-48681

Disclosure Date: May 28, 2024 (last updated January 15, 2025)
Some Huawei smart speakers have a memory overflow vulnerability. Successful exploitation of this vulnerability may cause certain functions to fail.
Attacker Value
Unknown

CVE-2024-4046

Disclosure Date: May 14, 2024 (last updated December 21, 2024)
Cracking vulnerability in the OS security module Impact: Successful exploitation of this vulnerability will affect availability.
Attacker Value
Unknown

CVE-2024-32999

Disclosure Date: May 14, 2024 (last updated December 21, 2024)
Cracking vulnerability in the OS security module Impact: Successful exploitation of this vulnerability will affect availability.
Attacker Value
Unknown

CVE-2024-32998

Disclosure Date: May 14, 2024 (last updated December 21, 2024)
NULL pointer access vulnerability in the clock module Impact: Successful exploitation of this vulnerability will affect availability.
Attacker Value
Unknown

CVE-2024-32997

Disclosure Date: May 14, 2024 (last updated December 21, 2024)
Race condition vulnerability in the binder driver module Impact: Successful exploitation of this vulnerability will affect availability.
Attacker Value
Unknown

CVE-2024-32996

Disclosure Date: May 14, 2024 (last updated December 21, 2024)
Privilege escalation vulnerability in the account module Impact: Successful exploitation of this vulnerability will affect availability.