Skip to main content

BIOS Implementations Multiple Vulnerabilities

Last Update Date: 31 Jul 2015 10:39 Release Date: 31 Jul 2015 3346 Views

RISK: Medium Risk

TYPE: Attacks - Other

TYPE: Other

Multiple BIOS implementations fail to properly set write protections after waking from sleep, leading to the possibility of an arbitrary BIOS image reflash.


Impact

  • Remote Code Execution
  • Security Restriction Bypass

System / Technologies affected

  • BIOS from Dell and Apple are affected. Whether BIOS from others venders are affected is unknown. 

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

  • Refer to Dell's support page.
  • Apple updates addressing this issue have been pushed via the App Store beginning June 30, 2015.

 


Vulnerability Identifier


Source


Related Link