PT-2025-17633 · Insyde · Kernel

Published

2025-04-23

·

Updated

2025-07-29

·

CVE-2024-52880

CVSS v3.1

7.9

High

VectorAV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions: Insyde InsydeH2O kernel versions 5.2 through 05.29.49 Insyde InsydeH2O kernel versions 5.3 through 05.38.49 Insyde InsydeH2O kernel versions 5.4 through 05.46.49 Insyde InsydeH2O kernel versions 5.5 through 05.54.49 Insyde InsydeH2O kernel versions 5.6 through 05.61.49 Insyde InsydeH2O kernel versions 5.7 through 05.70.49
Description: An issue was discovered in the VariableRuntimeDxe driver, where the SecureBootHandler uses DataSize and VariableNameSize when determining if the data or name are in the buffer. However, these values are supplied by the caller and therefore cannot be trusted.
Recommendations: For Insyde InsydeH2O kernel versions 5.2 through 05.29.49, update to version 05.29.50 or later. For Insyde InsydeH2O kernel versions 5.3 through 05.38.49, update to version 05.38.50 or later. For Insyde InsydeH2O kernel versions 5.4 through 05.46.49, update to version 05.46.50 or later. For Insyde InsydeH2O kernel versions 5.5 through 05.54.49, update to version 05.54.50 or later. For Insyde InsydeH2O kernel versions 5.6 through 05.61.49, update to version 05.61.50 or later. For Insyde InsydeH2O kernel versions 5.7 through 05.70.49, update to version 05.70.50 or later.

Fix

RCE

Weakness Enumeration

Related Identifiers

CVE-2024-52880

Affected Products

Kernel