MEDIUM · 6.7

CVE-2020-27339

In the kernel in Insyde InsydeH2O 5.x, certain SMM drivers did not correctly validate the CommBuffer and CommBufferSize parameters, allowing callers to corrupt either the firmware or the OS memory. Th...

Vulnerability Description

In the kernel in Insyde InsydeH2O 5.x, certain SMM drivers did not correctly validate the CommBuffer and CommBufferSize parameters, allowing callers to corrupt either the firmware or the OS memory. The fixed versions for this issue in the AhciBusDxe, IdeBusDxe, NvmExpressDxe, SdHostDriverDxe, and SdMmcDeviceDxe drivers are 05.16.25, 05.26.25, 05.35.25, 05.43.25, and 05.51.25 (for Kernel 5.1 through 5.5).

CVSS Score

6.7

MEDIUM

CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
HIGH
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
HIGH
Availability
HIGH

Affected Products

VendorProductVersions
InsydeInsydeh2O>= 5.3, < 5.34.44
SiemensRuggedcom Apr1808 Firmware-
SiemensRuggedcom Apr1808-
SiemensSimatic Field Pg M5 Firmware-
SiemensSimatic Field Pg M5-
SiemensSimatic Field Pg M6 Firmware-
SiemensSimatic Field Pg M6-
SiemensSimatic Ipc127E Firmware-
SiemensSimatic Ipc127E-
SiemensSimatic Ipc227G Firmware-
SiemensSimatic Ipc227G-
SiemensSimatic Ipc277G Firmware-
SiemensSimatic Ipc277G-
SiemensSimatic Ipc327G Firmware-
SiemensSimatic Ipc327G-
SiemensSimatic Ipc377G Firmware-
SiemensSimatic Ipc377G-
SiemensSimatic Ipc427E Firmware-
SiemensSimatic Ipc427E-
SiemensSimatic Ipc477E Firmware-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2020-27339?

CVE-2020-27339 is a vulnerability with a CVSS score of 6.7 (MEDIUM). In the kernel in Insyde InsydeH2O 5.x, certain SMM drivers did not correctly validate the CommBuffer and CommBufferSize parameters, allowing callers to corrupt either the firmware or the OS memory. Th...

How severe is CVE-2020-27339?

CVE-2020-27339 has been rated MEDIUM with a CVSS base score of 6.7/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2020-27339?

Check the references section above for vendor advisories and patch information. Affected products include: Insyde Insydeh2O, Siemens Ruggedcom Apr1808 Firmware, Siemens Ruggedcom Apr1808, Siemens Simatic Field Pg M5 Firmware, Siemens Simatic Field Pg M5.