PT-2024-25416 · Unknown · Smmcomputrace

Published

2024-08-21

·

Updated

2024-08-25

·

CVE-2024-33656

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions SmmComputrace (affected versions not specified)
Description The DXE module SmmComputrace contains a vulnerability that allows local attackers to leak stack or global memory. This could lead to privilege escalation, arbitrary code execution, and bypassing OS security mechanisms.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Privilege Management

Weakness Enumeration

Related Identifiers

CVE-2024-33656

Affected Products

Smmcomputrace