CVE-2023-40238

MEDIUMCVSS 5.5/10EPSS 1.86%

Last modified

CVE-2023-40238 is a medium-severity vulnerability rated 5.5/10 on the CVSS scale. A LogoFAIL issue was discovered in BmpDecoderDxe in Insyde InsydeH2O with kernel 5.2 before 05.28.47, 5.3 before 05.37.47, 5.4 before 05.45.47, 5.5 before 05.53.47, and 5.6 before 05.60.47 for certain Lenovo devices. Image parsing of crafted BMP logo files can copy data to a specific address during the DXE phase of UEFI execution. EPSS estimates a 1.86% chance of exploitation in the next 30 days.

Description

A LogoFAIL issue was discovered in BmpDecoderDxe in Insyde InsydeH2O with kernel 5.2 before 05.28.47, 5.3 before 05.37.47, 5.4 before 05.45.47, 5.5 before 05.53.47, and 5.6 before 05.60.47 for certain Lenovo devices. Image parsing of crafted BMP logo files can copy data to a specific address during the DXE phase of UEFI execution. This occurs because of an integer signedness error involving PixelHeight and PixelWidth during RLE4/RLE8 compression.

Metrics

CVSS 3.1
5.5/10

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

EPSS Probability
1.86%

76.5th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
FujitsuEsprimo D556\/2 Firmware< 1.35.0
FujitsuEsprimo D6011 Firmware< 1.31.0
FujitsuEsprimo D6012 Firmware< 3.08.0
FujitsuEsprimo D7010 Firmware< 1.64.0
FujitsuEsprimo D7010\/8 Firmware< 1.64.0
FujitsuEsprimo D7011 Firmware< 1.31.0
FujitsuEsprimo D7012 Firmware< 3.08.0
FujitsuEsprimo D7013 Firmware< 3.08.0
FujitsuEsprimo D738 Firmware< 1.38.0
FujitsuEsprimo D757 Firmware< 1.35.0
FujitsuEsprimo D9010 Firmware< 1.64.0
FujitsuEsprimo D9011 Firmware< 1.31.0
FujitsuEsprimo D9012 Firmware< 3.08.0
FujitsuEsprimo D9013 Firmware< 3.08.0
FujitsuEsprimo D957 Firmware< 1.35.0
FujitsuEsprimo D957\/E9x\+ Firmware< 1.35.0
FujitsuEsprimo D958 Firmware< 1.38.0
FujitsuEsprimo G5010 Firmware< 1.45.0
FujitsuEsprimo G5011 Firmware< 1.27.0
FujitsuEsprimo G558 Firmware< 1.38.0
FujitsuEsprimo G6012 Firmware< 3.08.0
FujitsuEsprimo G9010 Firmware< 1.45.0
FujitsuEsprimo G9012 Firmware< 3.08.0
FujitsuEsprimo G9013 Firmware< 3.08.0
FujitsuEsprimo K5010\/24 Firmware< 1.64.0
FujitsuEsprimo K557\/24 Firmware< 1.18.0
FujitsuEsprimo K558\/24 Firmware< 1.38.0
FujitsuEsprimo P5010 Firmware< 1.64.0
FujitsuEsprimo P5011 Firmware< 1.31.0
FujitsuEsprimo P557 Firmware< 1.35.0
FujitsuEsprimo P558\/Power Firmware< 1.38.0
FujitsuEsprimo P6012 Firmware< 3.08.0
FujitsuEsprimo P7010 Firmware< 1.64.0
FujitsuEsprimo P7011 Firmware< 1.31.0
FujitsuEsprimo P7012 Firmware< 3.08.0
FujitsuEsprimo P7013 Firmware< 3.08.0
FujitsuEsprimo P757 Firmware< 1.35.0
FujitsuEsprimo P758 Firmware< 1.38.0
FujitsuEsprimo P9010 Firmware<= 1.64.0
FujitsuEsprimo P9011 Firmware< 1.31.0
FujitsuEsprimo P9012 Firmware< 3.08.0
FujitsuEsprimo P9013 Firmware< 3.08.0
FujitsuEsprimo P957 Firmware< 1.35.0
FujitsuLifebook U9313x Firmware< 2.12
FujitsuLifebook U939 Firmware< 2.23
FujitsuLifebook U939x Firmware< 2.26
FujitsuLifebook U9413 Firmware< 2.12
FujitsuStylistic Q5010 Firmware< 1.38
FujitsuStylistic Q509 Firmware< 1.37
FujitsuStylistic Q7310 Firmware< 2.27

Showing 50 of 191 affected configurations. See NVD for the full list.

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2023-40238?
A LogoFAIL issue was discovered in BmpDecoderDxe in Insyde InsydeH2O with kernel 5.2 before 05.28.47, 5.3 before 05.37.47, 5.4 before 05.45.47, 5.5 before 05.53.47, and 5.6 before 05.60.47 for certain Lenovo devices. Image parsing of crafted BMP logo files can copy data to a specific address during the DXE phase of UEFI execution. This occurs because of an integer signedness error involving PixelHeight and PixelWidth during RLE4/RLE8 compression.
How severe is CVE-2023-40238?
CVE-2023-40238 has a CVSS score of 5.5/10 (MEDIUM severity). The EPSS model estimates a 1.86% probability of exploitation in the next 30 days.
How do I fix CVE-2023-40238?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2023-40238?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST