Insyde's Security Pledge

Recent Security Advisories

Security Advisory Archives

BIOS & BMC

Link
Summary
CVSS Score
INSYDE-SA-2026009H19WMIHandlerSmm: unvalidated memory boundary could result in arbitrary code execution.
8.2
Link
Summary
CVSS Score
INSYDE-SA-2026008Code change to accommodate OpenSSL 3.0.21
See in description
Link
Summary
CVSS Score
INSYDE-SA-2026004UEFI BIOS embedded Shell can be used to bypass Secure Boot
8.2
Link
Summary
CVSS Score
INSYDE-SA-2026006FMTSWriteUseIntelLib: FMTS SMM IHISI Buffer Overflow
2.7
Link
Summary
CVSS Score
INSYDE-SA-2026005HDD Password leakage vulnerability.
6.9
Link
Summary
CVSS Score
INSYDE-SA-2026003Lack of verified boot to certain FV may cause arbitrary code execution.
8.2
Link
Summary
CVSS Score
INSYDE-SA-2026001Code change to accommodate OpenSSL 3.0.19
Multiple
Link
Summary
CVSS Score
INSYDE-SA-2025010Buffer overflow vulnerabilities in the InsydeH2O tools.
7.8
Link
Summary
CVSS Score
INSYDE-SA-2025009H19Int15CallbackSmm: SMM memory corruption vulnerability in combined DXE/SMM (SMRAM write)
8.2
Link
Summary
CVSS Score
INSYDE-SA-2024003[EDK2]UsbKbDxe: Uncleared password keystrokes in circular queue might lead to information disclosure or escalation of privilege
5.6
Link
Summary
CVSS Score
INSYDE-SA-2025008[EDK2] Unsafe handling of IDT register on SMM entry allows arbitrary code execution with System Management Mode (SMM) privileges.
7
Link
Summary
CVSS Score
INSYDE-SA-2024022[EDK2] iSCSI Remote Memory Corruption and Denial of Service
6.3