CVE-2025-29950

Improper input validation in system management mode (SMM) could allow a privileged attacker to overwrite stack memory leading to arbitrary code execution.
CVSS

No CVSS.

Configurations

No configuration.

History

15 Apr 2026, 00:35

Type Values Removed Values Added
Summary
  • (es) Validación de entrada incorrecta en modo de gestión del sistema (SMM) podría permitir a un atacante privilegiado sobrescribir la memoria de la pila, lo que llevaría a la ejecución de código arbitrario.

10 Feb 2026, 20:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-02-10 20:16

Updated : 2026-04-15 00:35


NVD link : CVE-2025-29950

Mitre link : CVE-2025-29950

CVE.ORG link : CVE-2025-29950


JSON object : View

Products Affected

No product.

CWE
CWE-1274

Improper Access Control for Volatile Memory Containing Boot Code