CVE-2022-35408
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
22/09/2022
Last modified:
27/05/2025
Description
An issue was discovered in Insyde InsydeH2O with kernel 5.0 through 5.5. An SMM callout vulnerability in the SMM driver in UsbLegacyControlSmm leads to possible arbitrary code execution in SMM and escalation of privileges. An attacker could overwrite the function pointers in the EFI_BOOT_SERVICES table before the USB SMI handler triggers. (This is not exploitable from code running in the operating system.)
Impact
Base Score 3.x
8.20
Severity 3.x
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:insyde:insydeh2o:*:*:*:*:*:*:*:* | 5.1 (including) | 5.17.38 (excluding) |
| cpe:2.3:a:insyde:insydeh2o:*:*:*:*:*:*:*:* | 5.2 (including) | 05.27.28 (excluding) |
| cpe:2.3:a:insyde:insydeh2o:*:*:*:*:*:*:*:* | 5.3 (including) | 05.36.28 (excluding) |
| cpe:2.3:a:insyde:insydeh2o:*:*:*:*:*:*:*:* | 5.4 (including) | 05.44.28 (excluding) |
| cpe:2.3:a:insyde:insydeh2o:*:*:*:*:*:*:*:* | 5.5 (including) | 05.52.28 (excluding) |
| cpe:2.3:a:insyde:insydeh2o:*:*:*:*:*:*:*:* | 5.0 (including) | 05.09.38 (excluding) |
To consult the complete list of CPE names with products and versions, see this page



