CVE-2021-42554
An SMM memory corruption vulnerability in FvbServicesRuntimeDxe allows a possible attacker to write fixed or predictable data to SMRAM.
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (0.33%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
An issue was discovered in Insyde InsydeH2O with Kernel 5.0 before 05.08.42, Kernel 5.1 before 05.16.42, Kernel 5.2 before 05.26.42, Kernel 5.3 before 05.35.42, Kernel 5.4 before 05.42.51, and Kernel 5.5 before 05.50.51. An SMM memory corruption vulnerability in FvbServicesRuntimeDxe allows a possible attacker to write fixed or predictable data to SMRAM. Exploiting this issue could lead to escalating privileges to SMM.
- CVSS 3.1
- 8.2 HIGHCVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
- EPSS
- 0.33% probability · 26th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-787
- Affected
- insyde/insydeh2o · siemens/simatic field pg m5 firmware · siemens/simatic field pg m6 firmware · siemens/simatic ipc127e firmware · siemens/simatic ipc227g firmware · siemens/simatic ipc277g firmware · siemens/simatic ipc327g firmware · siemens/simatic ipc377g firmware · siemens/simatic ipc427e firmware · siemens/simatic ipc477e firmware · siemens/simatic ipc627e firmware · siemens/simatic ipc647e firmware · siemens/simatic ipc677e firmware · siemens/simatic ipc847e firmware · siemens/simatic itp1000 firmware · siemens/ruggedcom ape1808 firmware
- Source
- cve@mitre.org
References
- https://cert-portal.siemens.com/productcert/pdf/ssa-306654.pdfThird Party Advisory
- https://security.netapp.com/advisory/ntap-20220216-0007/Third Party Advisory
- https://www.insyde.com/security-pledgeVendor Advisory
- https://www.insyde.com/security-pledge/SA-2022012Vendor Advisory
- https://cert-portal.siemens.com/productcert/pdf/ssa-306654.pdfThird Party Advisory
- https://security.netapp.com/advisory/ntap-20220216-0007/Third Party Advisory
- https://www.insyde.com/security-pledgeVendor Advisory
- https://www.insyde.com/security-pledge/SA-2022012Vendor Advisory
- https://www.kb.cert.org/vuls/id/796611
- https://cert-portal.siemens.com/productcert/html/ssa-306654.html
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.