← Back to CVE List

CVE-2022-36337

Published: 2022-11-23T03:15Z
Last Modified: 2024-11-21T07:12Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
An issue was discovered in Insyde InsydeH2O with kernel 5.0 through 5.5. A stack buffer overflow vulnerability in the MebxConfiguration driver leads to arbitrary code execution. Control of a UEFI variable under the OS can cause this overflow when read by BIOS code. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt