MEDIUM🇬🇧 English

CVE-2025-0012

CVSS 6.8v4.0pub. 2026-02-10upd. 2026-04-15

Niewłaściwe obsługiwanie nakładania się między segmentowaną tabelą mapy zwrotnej (RMP) a pamięcią SMM (system management mode) mogłoby pozwolić uprzywilejowanemu atakującemu na uszkodzenie lub częściowe odczytanie pamięci SMM, co prowadzi do utraty integralności lub poufności.

Pokaż oryginał (EN)

Improper handling of overlap between the segmented reverse map table (RMP) and system management mode (SMM) memory could allow a privileged attacker corrupt or partially infer SMM memory resulting in loss of integrity or confidentiality.

CVSS Vector
CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:L/VI:H/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
🔵
ZWERYFIKUJ U PRODUCENTA
Brak jednoznacznych danych o patchu. Sprawdź referencje od producenta.
CWE
Referencje