CVE-2024-33658Improper Restriction of Operations within the Bounds of a Memory Buffer in Aptiov

Severity
4.4MEDIUMNVD
EPSS
0.2%
top 54.28%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedNov 12

Description

APTIOV contains a vulnerability in BIOS where an attacker may cause an Improper Restriction of Operations within the Bounds of a Memory Buffer by local. Successful exploitation of this vulnerability may lead to privilege escalation and potentially arbitrary code execution, and impact Integrity.

CVSS vector

CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:P/VC:L/VI:H/VA:L/SC:L/SI:L/SA:L

Affected Packages2 packages

NVDami/aptio_v5.05.037
CVEListV5ami/aptiovBKS_5.0BKS_5.37

🔴Vulnerability Details

2
CVEList
Buffer Overflow Vulnerability In OFBD2024-11-12
GHSA
GHSA-rf57-p454-qrmj: APTIOV contains a vulnerability in BIOS where an attacker may cause an Improper Restriction of Operations within the Bounds of a Memory Buffer by loca2024-11-12
CVE-2024-33658 — AMI Aptiov vulnerability | cvebase