Huawei Matebook D16(Model: CREM-WXX9, BIOS: v2.26), As the communication buffer size hasn’t been properly validated to be of the expected size, it can partially overlap with the beginning SMRAM.This can be leveraged by a malicious OS attacker to corrupt data structures stored at the beginning of SMRAM and can potentially lead to code execution in SMM.
References
Link | Resource |
---|---|
https://www.huawei.com/en/psirt/security-advisories/2024/huawei-sa-hppvticfuoec-8ffde288-en | Vendor Advisory |
https://www.huawei.com/en/psirt/security-advisories/2024/huawei-sa-hppvticfuoec-8ffde288-en | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
17 Jan 2025, 18:32
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:o:huawei:curiem-wfg9b_firmware:ota-curiem-bios-2.29:*:*:*:*:*:*:* cpe:2.3:h:huawei:curiem-wfg9b:-:*:*:*:*:*:*:* |
|
References | () https://www.huawei.com/en/psirt/security-advisories/2024/huawei-sa-hppvticfuoec-8ffde288-en - Vendor Advisory | |
First Time |
Huawei
Huawei curiem-wfg9b Firmware Huawei curiem-wfg9b |
21 Nov 2024, 08:40
Type | Values Removed | Values Added |
---|---|---|
References | () https://www.huawei.com/en/psirt/security-advisories/2024/huawei-sa-hppvticfuoec-8ffde288-en - |
28 May 2024, 12:39
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
28 May 2024, 07:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-05-28 07:15
Updated : 2025-01-17 18:32
NVD link : CVE-2023-52710
Mitre link : CVE-2023-52710
CVE.ORG link : CVE-2023-52710
JSON object : View
Products Affected
huawei
- curiem-wfg9b
- curiem-wfg9b_firmware
CWE
CWE-754
Improper Check for Unusual or Exceptional Conditions