Insyde's Security Pledge
Insyde Security Advisory 2022026
|Insyde ID||Advisory Category||Impact of Vulnerability||Severity Rating||Original Date||Last Revised|
Error in handling the PlatformLangCodes UEFI variable could cause a buffer overflow, leading to resource exhaustion and failure.
This issue corresponds to CVE-2021-43614. It affects the VariableEditSmm driver. This driver is part of an InsydeH2O feature, not the kernel. It was fixed in version 01.01.04.0008 of the feature.