CVE-2023-31343

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Feb 11, 2025
CWE ID 20

Summary

CVE-2023-31343 is a vulnerability affecting the System Management Mode (SMM) handler. The issue arises due to improper input validation, enabling a privileged attacker to overwrite the Supervisor Mode Memory (SMRAM). This can result in the execution of arbitrary code, posing a serious security risk. The vulnerability can be exploited by an attacker with local access to the system, making it crucial for organizations to apply the necessary patches promptly to mitigate the threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share