系微安全保證

最新安全公告

Security Advisory Archives

BIOS & BMC

Link
Summary
CVSS Score
INSYDE-SA-2025008[EDK2] Unsafe handling of IDT register on SMM entry allows arbitrary code execution with System Management Mode (SMM) privileges.
7
Link
Summary
CVSS Score
INSYDE-SA-2024022[EDK2] iSCSI Remote Memory Corruption and Denial of Service
6.3
Link
Summary
CVSS Score
INSYDE-SA-2025005UsbCoreDxe: improper input validation may lead to arbitrary code execution. Tcg2Smm: improper input validation may lead to arbitrary code execution. SetupUtility: A buffer overflow vulnerability leads to arbitrary code execution.
7.5
Link
Summary
CVSS Score
INSYDE-SA-2025006Secure Boot Forbidden Signature Database, dbx, update.
See in Description
Link
Summary
CVSS Score
INSYDE-SA-2025004[EDK2] Remote Memory Exposure in iSCSI DXE
3.5
Link
Summary
CVSS Score
INSYDE-SA-2025007Vulnerabilities in the OEM specific feature.
6.0-8.2
Link
Summary
CVSS Score
INSYDE-SA-2025003[FreeType] Upgrade FreeType to v2.13.3
See description.
Link
Summary
CVSS Score
INSYDE-SA-2024018UsbCoreDxe: Improper input validation may cause arbitrary code execution.
7.5
Link
Summary
CVSS Score
INSYDE-SA-2024019[EDK2] Integer overflows in PeCoffLoaderRelocateImage.
5.9
Link
Summary
CVSS Score
INSYDE-SA-2025002SecureFlashDxe: Incorrect UEFI variable attributes check allows usage of invalid certificate.
7.8
Link
Summary
CVSS Score
INSYDE-SA-2025001[OpenSSL]Timing side-channel in ECDSA signature computation.
Low
Link
Summary
CVSS Score
INSYDE-SA-2024016VariableRuntimeDxe: Unsafe functions may cause buffer over-read.
5.3