High severity7.1NVD Advisory· Published Aug 3, 2023· Updated Jun 17, 2026
CVE-2023-25600
CVE-2023-25600
Description
An issue was discovered in InsydeH2O. A malicious operating system can tamper with a runtime-writable EFI variable, leading to out-of-bounds memory reads and a denial of service. This is fixed in version 01.01.04.0016.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Insyde/InsydeH2Odescription
Patches
Vulnerability mechanics
References
2- www.insyde.com/security-pledge/SA-2023028nvdVendor Advisory
- www.insyde.com/security-pledgenvdNot Applicable
News mentions
0No linked articles in our index yet.