An issue was discovered in AhciBusDxe in Insyde InsydeH2O with kernel 5.1 before 05.16.25, 5.2 before 05.26.25, 5.3 before 05.35.25, 5.4 before 05.43.25, and 5.5 before 05.51.25. A vulnerability exists in the SMM (System Management Mode) branch that registers a SWSMI handler that does not sufficiently check or validate the allocated buffer pointer (the CommBuffer+8 location).
Metrics
Affected Vendors & Products
References
History
Tue, 04 Nov 2025 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Status: PUBLISHED
Assigner: mitre
Published: 2022-01-05T23:00:28.000Z
Updated: 2025-11-04T19:12:47.447Z
Reserved: 2022-01-01T00:00:00.000Z
Link: CVE-2021-45969
No data.
Status : Modified
Published: 2022-01-05T23:15:08.833
Modified: 2025-11-04T20:16:02.680
Link: CVE-2021-45969
No data.
ReportizFlow