VulnerabilityAwaiting Analysis
CVE-2026-9805
SMM IHISI command handler, FMTSWriteUseIntelLib, for FMTS command 0x32, read and write data without checking buffer size and could cause buffer overflow.
LOW 2.7EPSS 0.12%
Does this matter?
Lower severity and a low EPSS score (0.12%). Track it; it rarely justifies an emergency change on its own.
Description
SMM IHISI command handler, FMTSWriteUseIntelLib, for FMTS command 0x32, read and write data without checking buffer size and could cause buffer overflow.
- CVSS 3.1
- 2.7 LOWCVSS:3.1/AV:P/AC:H/PR:H/UI:R/S:U/C:N/I:L/A:L
- EPSS
- 0.12% probability · 2th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-787
- Source
- 8338d8cb-57f7-4252-abc0-96fd13e98d21
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.