GIGABYTE BRIX UEFI firmware for the GB-BSi7H-6500 (version F6) and GB-BXi7-5775 (version F2) platforms does not securely implement BIOSWE, BLE, SMM_BWP, and PRx features. As a result, the BIOS is not protected from arbitrary write access and may permit modifications to the SPI flash.
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HGigabyte Gb Bsi7h 6500
HWGigabyteall versionsGigabyte Gb Bsi7h 6500 Firmware
OSGigabytef6Gigabyte Gb Bxi7 5775
HWGigabyteall versionsGigabyte Gb Bxi7 5775 Firmware
OSGigabytef2
Related vulnerabilities
Gigabyte BRIX UEFI — brak weryfikacji podpisu aktualizacji firmware przez HTTP
Gigabyte GDrv — niekontrolowany dostęp do rejestrów MSR przez sterownik niskopoziomowy
Gigabyte Control Center — zapis dowolnych plików prowadzący do RCE lub privilege escalation
The GPCIDrv and GDrv low-level drivers in GIGABYTE APP Center v1.05.21 and earlier, AORUS GRAPHICS ENGINE befo...
The GDrv low-level driver in GIGABYTE APP Center v1.05.21 and earlier, AORUS GRAPHICS ENGINE before 1.57, XTRE...