7.8

CVE-2022-30426

Exploit

There is a stack buffer overflow vulnerability, which could lead to arbitrary code execution in UEFI DXE driver on some Acer products. An attack could exploit this vulnerability to escalate privilege from ring 3 to ring 0, and hijack control flow during UEFI DXE execution. This affects Altos T110 F3 firmware version <= P13 (latest) and AP130 F2 firmware version <= P04 (latest) and Aspire 1600X firmware version <= P11.A3L (latest) and Aspire 1602M firmware version <= P11.A3L (latest) and Aspire 7600U firmware version <= P11.A4 (latest) and Aspire MC605 firmware version <= P11.A4L (latest) and Aspire TC-105 firmware version <= P12.B0L (latest) and Aspire TC-120 firmware version <= P11-A4 (latest) and Aspire U5-620 firmware version <= P11.A1 (latest) and Aspire X1935 firmware version <= P11.A3L (latest) and Aspire X3475 firmware version <= P11.A3L (latest) and Aspire X3995 firmware version <= P11.A3L (latest) and Aspire XC100 firmware version <= P11.B3 (latest) and Aspire XC600 firmware version <= P11.A4 (latest) and Aspire Z3-615 firmware version <= P11.A2L (latest) and Veriton E430G firmware version <= P21.A1 (latest) and Veriton B630_49 firmware version <= AAP02SR (latest) and Veriton E430 firmware version <= P11.A4 (latest) and Veriton M2110G firmware version <= P21.A3 (latest) and Veriton M2120G fir.

Data is provided by the National Vulnerability Database (NVD)
AcerAltos T110 F3 Firmware Version < p13
   AcerAltos T110 F3 Version-
AcerAp130 F2 Firmware Version < p04
   AcerAp130 F2 Version-
AcerAspire 1600x Firmware Version < p11.a3l
   AcerAspire 1600x Version-
AcerAspire 1602m Firmware Version < p11.a3l
   AcerAspire 1602m Version-
AcerAspire 7600u Firmware Version < p11.a4
   AcerAspire 7600u Version-
AcerAspire Mc605 Firmware Version < p11.a4l
   AcerAspire Mc605 Version-
AcerAspire Tc-105 Firmware Version < p12.b0l
   AcerAspire Tc-105 Version-
AcerAspire Tc-120 Firmware Version < p11-a4
   AcerAspire Tc-120 Version-
AcerAspire U5-620 Firmware Version < p11.a1
   AcerAspire U5-620 Version-
AcerAspire X1935 Firmware Version < p11.a3l
   AcerAspire X1935 Version-
AcerAspire X3475 Firmware Version < p11.a3l
   AcerAspire X3475 Version-
AcerAspire X3995 Firmware Version < p11.a3l
   AcerAspire X3995 Version-
AcerAspire Xc100 Firmware Version < p11.b3
   AcerAspire Xc100 Version-
AcerAspire Xc600 Firmware Version < p11.a4
   AcerAspire Xc600 Version-
AcerAspire Z3-615 Firmware Version < p11.a2l
   AcerAspire Z3-615 Version-
AcerVeriton B630 49 Firmware Version < aap02sr
   AcerVeriton B630 49 Version-
AcerVeriton E430g Firmware Version < p21.a1
   AcerVeriton E430g Version-
AcerVeriton E430 Firmware Version < p11.a4
   AcerVeriton E430 Version-
AcerVeriton M2110g Firmware Version < p21.a3
   AcerVeriton M2110g Version-
AcerVeriton M2120g Firmware Version < p11-a3
   AcerVeriton M2120g Version-
AcerVeriton M2611g Firmware Version < p11-b0l
   AcerVeriton M2611g Version-
AcerVeriton M2611 Firmware Version < p11.b0
   AcerVeriton M2611 Version-
AcerVeriton M4620 Firmware Version < p21.a3
   AcerVeriton M4620 Version-
AcerVeriton M4620g Firmware Version < p21.a3
   AcerVeriton M4620g Version-
AcerVeriton M6620g Firmware Version < p21.a0
   AcerVeriton M6620g Version-
AcerVeriton N2620g Firmware Version < p21.b0
   AcerVeriton N2620g Version-
AcerVeriton N4620g Firmware Version < p11.a2l
   AcerVeriton N4620g Version-
AcerVeriton N4630g Firmware Version < p21.b0
   AcerVeriton N4630g Version-
AcerVeriton S6620g Firmware Version < p11.a1
   AcerVeriton S6620g Version-
AcerVeriton X2611g Firmware Version < p11.a4
   AcerVeriton X2611g Version-
AcerVeriton X2611 Firmware Version < p11.a4
   AcerVeriton X2611 Version-
AcerVeriton X4620g Firmware Version < p11.a3
   AcerVeriton X4620g Version-
AcerVeriton X6620g Firmware Version < p11.a3
   AcerVeriton X6620g Version-
AcerVeriton Z2650g Firmware Version < p21.a1
   AcerVeriton Z2650g Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.15% 0.357
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
134c704f-9b21-4f2e-91b3-4a467353bcc0 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CWE-787 Out-of-bounds Write

The product writes data past the end, or before the beginning, of the intended buffer.