CVE-2024-42446

APTIOV contains a vulnerability in BIOS where an attacker may cause a Time-of-check Time-of-use (TOCTOU) Race Condition by local means. Successful exploitation of this vulnerability may lead to arbitrary code execution.
Configurations

Configuration 1 (hide)

cpe:2.3:o:ami:aptio_v:*:*:*:*:*:*:*:*

History

02 Oct 2025, 14:22

Type Values Removed Values Added
First Time Ami aptio V
Ami
References () https://go.ami.com/hubfs/Security%20Advisories/2025/AMI-SA-2025004.pdf - () https://go.ami.com/hubfs/Security%20Advisories/2025/AMI-SA-2025004.pdf - Vendor Advisory
Summary
  • (es) APTIOV contiene una vulnerabilidad en la BIOS que permite a un atacante provocar una condición de ejecución de tiempo de verificación y tiempo de uso (TOCTOU) localmente. La explotación exitosa de esta vulnerabilidad puede provocar la ejecución de código arbitrario.
CPE cpe:2.3:o:ami:aptio_v:*:*:*:*:*:*:*:*

13 May 2025, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-05-13 14:15

Updated : 2025-10-02 14:22


NVD link : CVE-2024-42446

Mitre link : CVE-2024-42446

CVE.ORG link : CVE-2024-42446


JSON object : View

Products Affected

ami

  • aptio_v
CWE
CWE-367

Time-of-check Time-of-use (TOCTOU) Race Condition