PT-2022-20308 · Insyde · Insydeh2O Uefi Firmware
Published
2022-11-14
·
Updated
2025-04-30
·
CVE-2022-30774
CVSS v3.1
6.4
Medium
| Vector | AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
InsydeH2O UEFI firmware versions prior to Kernel 5.2: 05.27.29
InsydeH2O UEFI firmware versions prior to Kernel 5.3: 05.36.25
InsydeH2O UEFI firmware versions prior to Kernel 5.4: 05.44.25
InsydeH2O UEFI firmware versions prior to Kernel 5.5: 05.52.25
Description
The issue allows DMA attacks on the parameter buffer used by the PnpSmm driver, enabling changes to the contents after parameter values have been checked but before they are used, which is a Time-of-Check-to-Time-of-Use (TOCTOU) attack. This was discovered by Insyde engineering during a security review.
Recommendations
For versions prior to Kernel 5.2: 05.27.29, update to Kernel 5.2: 05.27.29 or later.
For versions prior to Kernel 5.3: 05.36.25, update to Kernel 5.3: 05.36.25 or later.
For versions prior to Kernel 5.4: 05.44.25, update to Kernel 5.4: 05.44.25 or later.
For versions prior to Kernel 5.5: 05.52.25, update to Kernel 5.5: 05.52.25 or later.
Fix
Time Of Check To Time Of Use
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Insydeh2O Uefi Firmware