APTIOV contains a vulnerability in BIOS where an attacker may cause a Time-of-check Time-of-use (TOCTOU) Race Condition by local means. Successful exploitation of this vulnerability may lead to arbitrary code execution.
Metrics
Affected Vendors & Products
References
History
Thu, 02 Oct 2025 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ami
Ami aptio V |
|
| CPEs | cpe:2.3:o:ami:aptio_v:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Ami
Ami aptio V |
Tue, 13 May 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 13 May 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | APTIOV contains a vulnerability in BIOS where an attacker may cause a Time-of-check Time-of-use (TOCTOU) Race Condition by local means. Successful exploitation of this vulnerability may lead to arbitrary code execution. | |
| Title | TOCTOU in SmmWhea | |
| Weaknesses | CWE-367 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: AMI
Published: 2025-05-13T14:02:10.628Z
Updated: 2025-05-13T15:16:25.056Z
Reserved: 2024-08-01T21:19:52.795Z
Link: CVE-2024-42446
Updated: 2025-05-13T15:16:08.520Z
Status : Analyzed
Published: 2025-05-13T14:15:19.497
Modified: 2025-10-02T14:22:05.427
Link: CVE-2024-42446
No data.