BIOS Implementations Multiple Vulnerabilities
Last Update Date:
31 Jul 2015 10:39
Release Date:
31 Jul 2015
4162
Views
RISK: Medium Risk
TYPE: Attacks - Other
Multiple BIOS implementations fail to properly set write protections after waking from sleep, leading to the possibility of an arbitrary BIOS image reflash.
Impact
- Remote Code Execution
- Security Restriction Bypass
System / Technologies affected
- BIOS from Dell and Apple are affected. Whether BIOS from others venders are affected is unknown.
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- Refer to Dell's support page.
- Apple updates addressing this issue have been pushed via the App Store beginning June 30, 2015.
Vulnerability Identifier
Source
Related Link
Share with