Improper input validation in the SMM handler could allow an attacker with Ring0 access to write to SMRAM and modify execution flow for S3 (sleep) wake up, potentially resulting in arbitrary code execution.
Metrics
Affected Vendors & Products
References
History
Tue, 10 Feb 2026 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 10 Feb 2026 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper input validation in the SMM handler could allow an attacker with Ring0 access to write to SMRAM and modify execution flow for S3 (sleep) wake up, potentially resulting in arbitrary code execution. | |
| Weaknesses | CWE-787 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: AMD
Published:
Updated: 2026-02-11T04:56:52.251Z
Reserved: 2024-05-23T19:44:50.001Z
Link: CVE-2024-36355
Updated: 2026-02-10T20:44:08.578Z
Status : Awaiting Analysis
Published: 2026-02-10T20:16:42.817
Modified: 2026-02-10T21:51:48.077
Link: CVE-2024-36355
No data.
OpenCVE Enrichment
No data.