VYPR

SMI handler

by Gigabyte

CVEs (1)

  • CVE-2025-7029HigJul 11, 2025
    risk 0.53cvss 8.2epss 0.00

    A vulnerability in the Software SMI handler (SwSmiInputValue 0xB2) allows a local attacker to control the RBX register, which is used to derive pointers (OcHeader, OcData) passed into power and thermal configuration logic. These buffers are not validated before performing…