Insyde's Security Pledge

Recent Security Advisories

Security Advisory Archives

BIOS & BMC

Link
Summary
CVSS Score
INSYDE-SA-2025002SecureFlashDxe: Incorrect UEFI variable attributes check allows usage of invalid certificate.
7.8
Link
Summary
CVSS Score
INSYDE-SA-2025001[OpenSSL]Timing side-channel in ECDSA signature computation.
Low
Link
Summary
CVSS Score
INSYDE-SA-2024016VariableRuntimeDxe: Unsafe functions may cause buffer over-read.
5.3
Link
Summary
CVSS Score
INSYDE-SA-2024021Howyar Reloader UEFI Application vulnerable to execution of unsigned software in a hardcoded path.
6.7
Link
Summary
CVSS Score
INSYDE-SA-2024015AcpiS3SaveDxe/ChipsetSvcDxe: A potential DXE memory corruption vulnerability
7.2
Link
Summary
CVSS Score
INSYDE-SA-2024017Upgrade curl to 8.11.1
3.7-5.3
Link
Summary
CVSS Score
INSYDE-SA-2024014TcgMor: Potential memory leak vulnerability
5.3
Link
Summary
CVSS Score
INSYDE-SA-2024007IhisiServiceSmm: A vulnerability in the module could allow an attacker to modify UEFI variables.
5.3
Link
Summary
CVSS Score
INSYDE-SA-2024011Upgrade curl to v8.10.1.
See in Description
Link
Summary
CVSS Score
INSYDE-SA-2024010Upgrade BIND to v9.18.28.
See in Description
Link
Summary
CVSS Score
INSYDE-SA-2024009Upgrade OpenSSL to 3.2.1.
Low
Link
Summary
CVSS Score
INSYDE-SA-2024006 [EDK2] FirmwarePerformancePei: Potential UINT32 overflow and subsequent divide by 0.
5.3