RSS   Vulnerabilities for 'Gb-bsi7h-6500 firmware'   RSS

2018-07-09
 
CVE-2017-3198

CWE-347
 

 
GIGABYTE BRIX UEFI firmware does not cryptographically validate images prior to updating the system firmware. Additionally, the firmware updates are served over HTTP. An attacker can make arbitrary modifications to firmware images without being detected.

 
 
CVE-2017-3197

CWE-20
 

 
GIGABYTE BRIX UEFI firmware for the GB-BSi7H-6500 (version F6) and GB-BXi7-5775 (version F2) platforms does not securely implement BIOSWE, BLE, SMM_BWP, and PRx features. As a result, the BIOS is not protected from arbitrary write access and may permit modifications to the SPI flash.

 

 >>> Vendor: Gigabyte 9 Products
Gn-b46b
Dldrv2 activex control
Gb-bsi7h-6500 firmware
Gb-bxi7-5775 firmware
Aorus graphics engine
App center
Oc guru ii
Xtreme gaming engine
Gigabyte app center


Copyright 2019, cxsecurity.com

 

Back to Top