Various Issues Due To Exposed SMI Handler in AmdPspP2CmboxV2. The first issue can be leveraged to bypass the protections that have been put in place by previous UEFI phases to prevent direct access to the SPI flash. The second issue can be used to both leak and corrupt SMM memory, thus potentially leading code execution in SMM
History

Fri, 17 Jan 2025 18:45:00 +0000

Type Values Removed Values Added
First Time appeared Huawei
Huawei curiem-wfg9b
Huawei curiem-wfg9b Firmware
Weaknesses NVD-CWE-noinfo
CPEs cpe:2.3:h:huawei:curiem-wfg9b:-:*:*:*:*:*:*:*
cpe:2.3:o:huawei:curiem-wfg9b_firmware:ota-curiem-b-bios-2.28:*:*:*:*:*:*:*
Vendors & Products Huawei
Huawei curiem-wfg9b
Huawei curiem-wfg9b Firmware

cve-icon MITRE

Status: PUBLISHED

Assigner: huawei

Published:

Updated: 2024-08-02T23:11:35.228Z

Reserved: 2024-03-21T10:20:07.053Z

Link: CVE-2023-52712

cve-icon Vulnrichment

Updated: 2024-06-10T17:10:14.752Z

cve-icon NVD

Status : Analyzed

Published: 2024-05-28T07:15:10.810

Modified: 2025-01-17T18:29:32.770

Link: CVE-2023-52712

cve-icon Redhat

No data.