An issue was discovered in Insyde InsydeH2O Kernel 5.0 before 05.08.41, Kernel 5.1 before 05.16.41, Kernel 5.2 before 05.26.41, Kernel 5.3 before 05.35.41, and Kernel 5.4 before 05.42.20. A stack-based buffer overflow leads toarbitrary code execution in UEFI DisplayTypeDxe DXE driver.
| Software | From | Fixed in |
|---|---|---|
| insyde / insydeh2o | 5.0 | 5.08.41 |
| insyde / insydeh2o | 5.1 | 5.16.41 |
| insyde / insydeh2o | 5.2 | 5.26.41 |
| insyde / insydeh2o | 5.3 | 5.35.41 |
| insyde / insydeh2o | 5.4 | 5.42.20 |
| siemens / simatic_field_pg_m5_firmware | - | - |
| siemens / simatic_field_pg_m6_firmware | - | - |
| siemens / simatic_ipc127e_firmware | - | - |
| siemens / simatic_ipc227g_firmware | - | - |
| siemens / simatic_ipc277g_firmware | - | - |
| siemens / simatic_ipc327g_firmware | - | - |
| siemens / simatic_ipc377g_firmware | - | - |
| siemens / simatic_ipc427e_firmware | - | - |
| siemens / simatic_ipc477e_firmware | - | - |
| siemens / simatic_ipc627e_firmware | - | - |
| siemens / simatic_ipc647e_firmware | - | - |
| siemens / simatic_ipc677e_firmware | - | - |
| siemens / simatic_ipc847e_firmware | - | - |
| siemens / simatic_itp1000_firmware | - | - |