SMM Local Code Execution Vulnerability (CVE-2015-0949) for Multiple Products)
Release date:
Updated on:
Affected Systems:
Dell
HP
Description:
Bugtraq id: 73261
CVE (CAN) ID: CVE-2015-0949
System Management Mode (SMM) is the highest permission Execution Mode on x86 processors.
In multiple BIOS implementations, The SMM function is allowed to call memory locations other than SMRAM. attackers who can access the physical memory first destroy the function pointer or function called by SMM, and then write operations on the SMI command port 0xb2, trigger SMM and execute arbitrary code in the SMM context.
<* Source: Corey Kallenberg
Link: http://www.kb.cert.org/vuls/id/631788
*>
Suggestion:
Vendor patch:
Dell
----
Currently, the vendor does not provide patches or upgrade programs. We recommend that users who use the software follow the vendor's homepage to obtain the latest version:
Http://www.dell.com/support/drivers/us/en/
This article permanently updates the link address: