CVE-2022-40080

Stack overflow vulnerability in Aspire E5-475G 's BIOS firmware, in the FpGui module, a second call to GetVariable services allows local attackers to execute arbitrary code in the UEFI DXE phase and gain escalated privileges.
References
Configurations

Configuration 1


Information

Published : 2023-02-16 08:15

Updated : 2023-02-24 08:40


NVD link : CVE-2022-40080

Mitre link : CVE-2022-40080

Products Affected
No products.
CWE
No CWE.