CVE-2025-12051
Unknown
Unknown - Not Provided
Buffer Overflow in Tool Package Drivers via RTL_QUERY_REGISTRY_DIRECT
Publication date: 2026-01-14
Last updated on: 2026-01-14
Assigner: Insyde
Description
Description
The drivers in the tool packages use RTL_QUERY_REGISTRY_DIRECT flag to read a registry value to which an untrusted user-mode application may be able to cause a buffer overflow.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| insyde | h2offt | 6.76.00 |
| insyde | h2offt | 200.02.01.00 |
| insyde | h2ouvez | 200.02.01.00 |
| insyde | h2osde | 200.02.01.00 |
| insyde | h2orte | 200.02.01.00 |
| insyde | h2ooae | 200.02.01.00 |
| insyde | h2opcm | 200.02.01.00 |
| insyde | h2oelv | 200.02.01.00 |
| insyde | h2ouve_arm | 200.02.01.00 |
| insyde | h2osde_arm | 200.02.01.00 |
| insyde | h2orte_arm | 200.02.01.00 |
| hp | flashwin | 6.51.00 |
| hp | readback_tool | 1.2.4.0 |
| hp | flashverifyutility | 6.2.5.0 |
| hp | issecurebootkeyinstaller | 1.2.0.2 |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-787 | The product writes data past the end, or before the beginning, of the intended buffer. |