Various Issues Due To Exposed SMI Handler in AmdPspP2CmboxV2. The first issue can be leveraged to bypass the protections that have been put in place by previous UEFI phases to prevent direct access to the SPI flash. The second issue can be used to both leak and corrupt SMM memory, thus potentially leading code execution in SMM
References
Link | Resource |
---|---|
https://www.huawei.com/en/psirt/security-advisories/2024/huawei-sa-iiacviahpp-71ce77ee-en | Vendor Advisory |
https://www.huawei.com/en/psirt/security-advisories/2024/huawei-sa-iiacviahpp-71ce77ee-en | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
17 Jan 2025, 18:29
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:o:huawei:curiem-wfg9b_firmware:ota-curiem-b-bios-2.28:*:*:*:*:*:*:* cpe:2.3:h:huawei:curiem-wfg9b:-:*:*:*:*:*:*:* |
|
CWE | NVD-CWE-noinfo | |
First Time |
Huawei
Huawei curiem-wfg9b Firmware Huawei curiem-wfg9b |
|
References | () https://www.huawei.com/en/psirt/security-advisories/2024/huawei-sa-iiacviahpp-71ce77ee-en - Vendor Advisory |
21 Nov 2024, 08:40
Type | Values Removed | Values Added |
---|---|---|
References | () https://www.huawei.com/en/psirt/security-advisories/2024/huawei-sa-iiacviahpp-71ce77ee-en - |
28 May 2024, 12:39
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
28 May 2024, 07:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-05-28 07:15
Updated : 2025-01-17 18:29
NVD link : CVE-2023-52712
Mitre link : CVE-2023-52712
CVE.ORG link : CVE-2023-52712
JSON object : View
Products Affected
huawei
- curiem-wfg9b
- curiem-wfg9b_firmware
CWE