A vulnerability exists in SMM (System Management Mode) branch that registers a SWSMI handler that does not sufficiently check or validate the allocated buffer pointer(QWORD values for CommBuffer). This can be used by an attacker to corrupt data in SMRAM memory and even lead to arbitrary code execution.
History

Tue, 04 Nov 2025 20:30:00 +0000

Type Values Removed Values Added
References

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2021-10-01T02:21:29.000Z

Updated: 2025-11-04T19:12:30.965Z

Reserved: 2021-05-28T00:00:00.000Z

Link: CVE-2021-33626

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-10-01T03:15:06.593

Modified: 2025-11-04T20:16:00.367

Link: CVE-2021-33626

cve-icon Redhat

No data.