CVE-2025-7028
BaseFortify
Publication date: 2025-07-11
Last updated on: 2025-11-03
Assigner: CERT/CC
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| american_megatrends | ami_firmware | * |
| gigabyte | uefi_firmware | * |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-UNKNOWN |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability exists in the Software SMI handler (SwSmiInputValue 0x20) where a local attacker can supply a crafted pointer through RBX and RCX registers. This pointer is used without validation in multiple flash management functions, allowing the attacker to read from and write to System Management RAM (SMRAM). This can lead to corruption of firmware memory, exfiltration of SMRAM content, or installation of persistent implants.
How can this vulnerability impact me? :
The vulnerability can allow an attacker with local access to corrupt firmware memory, steal sensitive information stored in SMRAM, or install persistent implants that could maintain unauthorized control over the system.