Tcg2Smm has a vulnerability which can be used to write arbitrary memory inside SMRAM and execute arbitrary code at SMM level.
References
Link | Resource |
---|---|
https://www.insyde.com/security-pledge/sa-2025005/ |
Configurations
No configuration.
History
13 Aug 2025, 17:33
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
13 Aug 2025, 02:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-08-13 02:15
Updated : 2025-08-13 17:33
NVD link : CVE-2025-4277
Mitre link : CVE-2025-4277
CVE.ORG link : CVE-2025-4277
JSON object : View
Products Affected
No product.
CWE
CWE-20
Improper Input Validation