Various Issues Due To Exposed SMI Handler in AmdPspP2CmboxV2. The first issue can be leveraged to bypass the protections that have been put in place by previous UEFI phases to prevent direct access to the SPI flash. The second issue can be used to both leak and corrupt SMM memory thus potentially leading code execution in SMM
History

Fri, 17 Jan 2025 18:45:00 +0000

Type Values Removed Values Added
First Time appeared Huawei curiem-wfg9b Firmware
Weaknesses CWE-401
CPEs cpe:2.3:h:huawei:curiem-wfg9b:-:*:*:*:*:*:*:*
cpe:2.3:o:huawei:curiem-wfg9b_firmware:curiem-wfg9b_bios_2.28:*:*:*:*:*:*:*
Vendors & Products Huawei curiem-wfg9b Firmware

cve-icon MITRE

Status: PUBLISHED

Assigner: huawei

Published:

Updated: 2024-08-02T23:11:34.963Z

Reserved: 2024-03-21T10:20:07.053Z

Link: CVE-2023-52711

cve-icon Vulnrichment

Updated: 2024-05-28T17:58:16.648Z

cve-icon NVD

Status : Analyzed

Published: 2024-05-28T07:15:10.490

Modified: 2025-01-17T18:29:39.560

Link: CVE-2023-52711

cve-icon Redhat

No data.