CVE-2024-52879 | Insyde InsydeH2O up to 05.70.49 VariableRuntimeDxe Driver SmmUpdateVariablePropertySmi comparison
A vulnerability marked as critical has been reported in Insyde InsydeH2O up to 05.70.49. Affected is the function SmmUpdateVariablePropertySmi of the component VariableRuntimeDxe Driver. The manipulation leads to incorrect comparison.
This vulnerability is traded as CVE-2024-52879. Access to the local network is required for this attack. There is no exploit available.
It is recommended to upgrade the affected component.