CVE-2022-33982
Estado: ModificadaMedia (6.4)—
DMA attacks on the parameter buffer used by the Int15ServiceSmm software SMI handler could lead to a TOCTOU attack on the SMI handler and lead to corruption of SMRAM. DMA attacks on the parameter buffer used by the software SMI handler used by the driver Int15ServiceSmm could lead to a TOCTOU attack on the SMI handler and lead to corruption of SMRAM. This issue was discovered by Insyde engineering during a security review. This issue is fixed in Kernel 5.2: 05.27.23, Kernel 5.3: 05.36.23, Kernel 5.4: 05.44.23 and Kernel 5.5: 05.52.23 CWE-367
CVSS
- Versión: 3.1
- Vector: CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H
- Puntuación base: 6.4
Probabilidad de explotación (EPSS)
- Probabilidad de explotación en los próximos 30 días: 0.16%
- Percentil entre todas las CVEs puntuadas: 4
- Fecha de la puntuación: 6/10/2026
EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).
Tecnologías afectadas (1)
CWE
- CWE-367
- CWE-367
Referencias
JSON original (NVD)
Mostrar
{
"id": "CVE-2022-33982",
"cveTags": [],
"metrics": {
"ssvcV203": [
{
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"ssvcData": {
"id": "CVE-2022-33982",
"role": "CISA Coordinator",
"options": [
{
"exploitation": "none"
},
{
"automatable": "no"
},
{
"technicalImpact": "total"
}
],
"version": "2.0.3",
"timestamp": "2025-04-30T20:17:37.339826Z"
}
}
],
"cvssMetricV31": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"scope": "UNCHANGED",
"version": "3.1",
"baseScore": 6.4,
"attackVector": "LOCAL",
"baseSeverity": "MEDIUM",
"vectorString": "CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H",
"integrityImpact": "HIGH",
"userInteraction": "NONE",
"attackComplexity": "HIGH",
"availabilityImpact": "HIGH",
"privilegesRequired": "HIGH",
"confidentialityImpact": "HIGH"
},
"impactScore": 5.9,
"exploitabilityScore": 0.5
},
{
"type": "Secondary",
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"cvssData": {
"scope": "UNCHANGED",
"version": "3.1",
"baseScore": 6.4,
"attackVector": "LOCAL",
"baseSeverity": "MEDIUM",
"vectorString": "CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H",
"integrityImpact": "HIGH",
"userInteraction": "NONE",
"attackComplexity": "HIGH",
"availabilityImpact": "HIGH",
"privilegesRequired": "HIGH",
"confidentialityImpact": "HIGH"
},
"impactScore": 5.9,
"exploitabilityScore": 0.5
}
]
},
"affected": [
{
"source": "cve@mitre.org",
"affectedData": [
{
"vendor": "n/a",
"product": "n/a",
"versions": [
{
"status": "affected",
"version": "n/a"
}
]
}
]
}
],
"published": "2022-11-14T23:15:11.020",
"references": [
{
"url": "https://cert-portal.siemens.com/productcert/pdf/ssa-450613.pdf",
"source": "cve@mitre.org"
},
{
"url": "https://www.insyde.com/security-pledge",
"tags": [
"Vendor Advisory"
],
"source": "cve@mitre.org"
},
{
"url": "https://www.insyde.com/security-pledge/SA-2022052",
"tags": [
"Vendor Advisory"
],
"source": "cve@mitre.org"
},
{
"url": "https://cert-portal.siemens.com/productcert/pdf/ssa-450613.pdf",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://www.insyde.com/security-pledge",
"tags": [
"Vendor Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://www.insyde.com/security-pledge/SA-2022052",
"tags": [
"Vendor Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Modified",
"weaknesses": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"description": [
{
"lang": "en",
"value": "CWE-367"
}
]
},
{
"type": "Secondary",
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"description": [
{
"lang": "en",
"value": "CWE-367"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "DMA attacks on the parameter buffer used by the Int15ServiceSmm software SMI handler could lead to a TOCTOU attack on the SMI handler and lead to corruption of SMRAM. DMA attacks on the parameter buffer used by the software SMI handler used by the driver Int15ServiceSmm could lead to a TOCTOU attack on the SMI handler and lead to corruption of SMRAM. This issue was discovered by Insyde engineering during a security review. This issue is fixed in Kernel 5.2: 05.27.23, Kernel 5.3: 05.36.23, Kernel 5.4: 05.44.23 and Kernel 5.5: 05.52.23 CWE-367"
},
{
"lang": "es",
"value": "Los ataques DMA al búfer de parámetros utilizado por el controlador SMI del software Int15ServiceSmm podrían provocar un ataque TOCTOU al controlador SMI y provocar la corrupción de SMRAM. Los ataques DMA al búfer de parámetros utilizado por el controlador SMI de software utilizado por el controlador Int15ServiceSmm podrían provocar un ataque TOCTOU al controlador SMI y provocar daños en SMRAM. Este problema fue descubierto por la ingeniería de Insyde durante una revisión de seguridad. Este problema se solucionó en Kernel 5.2: 05.27.23, Kernel 5.3: 05.36.23, Kernel 5.4: 05.44.23 y Kernel 5.5: 05.52.23 CWE-367"
}
],
"lastModified": "2026-06-17T04:49:36.487",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:insyde:kernel:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "94BB75BA-F075-45A2-AD76-BA8DCA2F4CEF",
"versionEndExcluding": "5.2.05.27.23",
"versionStartIncluding": "5.2"
},
{
"criteria": "cpe:2.3:a:insyde:kernel:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "B164BDEE-BE93-4EB5-89E7-AB2D63512CA6",
"versionEndExcluding": "5.3.05.36.23",
"versionStartIncluding": "5.3"
},
{
"criteria": "cpe:2.3:a:insyde:kernel:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "A5CC2DFA-DE56-4615-8F35-84F3ACD3B541",
"versionEndExcluding": "5.4.05.44.23",
"versionStartIncluding": "5.4"
},
{
"criteria": "cpe:2.3:a:insyde:kernel:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "9786B2BB-8754-4BA4-868E-FA2468D13AD2",
"versionEndExcluding": "5.5.05.52.23",
"versionStartIncluding": "5.5"
}
],
"operator": "OR"
}
]
}
],
"sourceIdentifier": "cve@mitre.org"
}