insyde software
Hardware Firmwarecommercial
Top products
Latest CVEs
The 15 most recently published vulnerabilities affecting insyde software.
- CVE-2025-12053egwindrvx64.sys is potentially vulnerable to a buffer overflow7.8
- CVE-2025-12052egwindrv.sys is potentially vulnerable to a buffer overflow.7.8
- CVE-2025-12051H2OFFT64.sys is potentially vulnerable to a buffer overflow.7.8
- CVE-2025-12050In H2OFFT32.sys is potentially vulnerable to a buffer overflow.7.8
- CVE-2025-10451H19Int15CallbackSmm: SMM memory corruption vulnerability in combined DXE/SMM (SMRAM write)8.2
- CVE-2025-4410SetupUtility: A buffer overflow vulnerability leads to arbitrary code execution.7.5
- CVE-2025-4277Tcg2Smm: improper input validation may lead to arbitrary code execution7.5
- CVE-2025-4276UsbCoreDxe: improper input validation may lead to arbitrary code execution7.5
- CVE-2025-4426SetupAutomationSmm : SMRAM memory contents leak / information disclosure vulnerability in SMM module6.0
- CVE-2025-4425SetupAutomationSmm: Stack overflow vulnerability in SMI handler8.2
- CVE-2025-4424SetupAutomationSmm : Arbitrary calls to SmmSetVariable with unsanitised arguments in SMI handler6.0
- CVE-2025-4423SetupAutomationSmm:Vulnerability in the SMM module allow attacker to write arbitrary code and lead to memory corruption8.2
- CVE-2025-4422EfiSmiServices : EfiPcdProtocol, SMM memory corruption vulnerabilities in SMM module8.2
- CVE-2025-4421EfiSmiServices: gEfiSmmCpuProtocol, SMM memory corruption vulnerabilities in SMM module8.2
- CVE-2025-4275SecureFlashDxe: Incorrect UEFI variable attributes check allows usage of invalid certificate7.8