VYPR

StorageSecurityCommandDxe

by Insyde

CVEs (1)

  • CVE-2022-34325HigNov 14, 2022
    risk 0.51cvss 7.8epss 0.00

    DMA transactions which are targeted at input buffers used for the StorageSecurityCommandDxe software SMI handler could cause SMRAM corruption through a TOCTOU attack. DMA transactions which are targeted at input buffers used for the software SMI handler used by the…