Description
GIGABYTE BRIX UEFI firmware for the GB-BSi7H-6500 (version F6) and GB-BXi7-5775 (version F2) platforms does not securely implement BIOSWE, BLE, SMM_BWP, and PRx features. As a result, the BIOS is not protected from arbitrary write access and may permit modifications to the SPI flash.
Published: 2018-07-09
Score: 9.8 Critical
EPSS: 2.8% Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2017-12323 GIGABYTE BRIX UEFI firmware for the GB-BSi7H-6500 (version F6) and GB-BXi7-5775 (version F2) platforms does not securely implement BIOSWE, BLE, SMM_BWP, and PRx features. As a result, the BIOS is not protected from arbitrary write access and may permit modifications to the SPI flash.
History

No history.

Subscriptions

Gigabyte Gb-bsi7h-6500 Gb-bsi7h-6500 Firmware Gb-bxi7-5775 Gb-bxi7-5775 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: certcc

Published:

Updated: 2024-08-05T14:16:28.250Z

Reserved: 2016-12-05T00:00:00.000Z

Link: CVE-2017-3197

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2018-07-09T19:29:00.247

Modified: 2024-11-21T03:25:00.867

Link: CVE-2017-3197

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses