CVE-2023-40238
Last modified
CVE-2023-40238 is a medium-severity vulnerability rated 5.5/10 on the CVSS scale. A LogoFAIL issue was discovered in BmpDecoderDxe in Insyde InsydeH2O with kernel 5.2 before 05.28.47, 5.3 before 05.37.47, 5.4 before 05.45.47, 5.5 before 05.53.47, and 5.6 before 05.60.47 for certain Lenovo devices. Image parsing of crafted BMP logo files can copy data to a specific address during the DXE phase of UEFI execution. EPSS estimates a 1.86% chance of exploitation in the next 30 days.
Description
A LogoFAIL issue was discovered in BmpDecoderDxe in Insyde InsydeH2O with kernel 5.2 before 05.28.47, 5.3 before 05.37.47, 5.4 before 05.45.47, 5.5 before 05.53.47, and 5.6 before 05.60.47 for certain Lenovo devices. Image parsing of crafted BMP logo files can copy data to a specific address during the DXE phase of UEFI execution. This occurs because of an integer signedness error involving PixelHeight and PixelWidth during RLE4/RLE8 compression.
Metrics
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Fujitsu | Esprimo D556\/2 Firmware | < 1.35.0 |
| Fujitsu | Esprimo D6011 Firmware | < 1.31.0 |
| Fujitsu | Esprimo D6012 Firmware | < 3.08.0 |
| Fujitsu | Esprimo D7010 Firmware | < 1.64.0 |
| Fujitsu | Esprimo D7010\/8 Firmware | < 1.64.0 |
| Fujitsu | Esprimo D7011 Firmware | < 1.31.0 |
| Fujitsu | Esprimo D7012 Firmware | < 3.08.0 |
| Fujitsu | Esprimo D7013 Firmware | < 3.08.0 |
| Fujitsu | Esprimo D738 Firmware | < 1.38.0 |
| Fujitsu | Esprimo D757 Firmware | < 1.35.0 |
| Fujitsu | Esprimo D9010 Firmware | < 1.64.0 |
| Fujitsu | Esprimo D9011 Firmware | < 1.31.0 |
| Fujitsu | Esprimo D9012 Firmware | < 3.08.0 |
| Fujitsu | Esprimo D9013 Firmware | < 3.08.0 |
| Fujitsu | Esprimo D957 Firmware | < 1.35.0 |
| Fujitsu | Esprimo D957\/E9x\+ Firmware | < 1.35.0 |
| Fujitsu | Esprimo D958 Firmware | < 1.38.0 |
| Fujitsu | Esprimo G5010 Firmware | < 1.45.0 |
| Fujitsu | Esprimo G5011 Firmware | < 1.27.0 |
| Fujitsu | Esprimo G558 Firmware | < 1.38.0 |
| Fujitsu | Esprimo G6012 Firmware | < 3.08.0 |
| Fujitsu | Esprimo G9010 Firmware | < 1.45.0 |
| Fujitsu | Esprimo G9012 Firmware | < 3.08.0 |
| Fujitsu | Esprimo G9013 Firmware | < 3.08.0 |
| Fujitsu | Esprimo K5010\/24 Firmware | < 1.64.0 |
| Fujitsu | Esprimo K557\/24 Firmware | < 1.18.0 |
| Fujitsu | Esprimo K558\/24 Firmware | < 1.38.0 |
| Fujitsu | Esprimo P5010 Firmware | < 1.64.0 |
| Fujitsu | Esprimo P5011 Firmware | < 1.31.0 |
| Fujitsu | Esprimo P557 Firmware | < 1.35.0 |
| Fujitsu | Esprimo P558\/Power Firmware | < 1.38.0 |
| Fujitsu | Esprimo P6012 Firmware | < 3.08.0 |
| Fujitsu | Esprimo P7010 Firmware | < 1.64.0 |
| Fujitsu | Esprimo P7011 Firmware | < 1.31.0 |
| Fujitsu | Esprimo P7012 Firmware | < 3.08.0 |
| Fujitsu | Esprimo P7013 Firmware | < 3.08.0 |
| Fujitsu | Esprimo P757 Firmware | < 1.35.0 |
| Fujitsu | Esprimo P758 Firmware | < 1.38.0 |
| Fujitsu | Esprimo P9010 Firmware | <= 1.64.0 |
| Fujitsu | Esprimo P9011 Firmware | < 1.31.0 |
| Fujitsu | Esprimo P9012 Firmware | < 3.08.0 |
| Fujitsu | Esprimo P9013 Firmware | < 3.08.0 |
| Fujitsu | Esprimo P957 Firmware | < 1.35.0 |
| Fujitsu | Lifebook U9313x Firmware | < 2.12 |
| Fujitsu | Lifebook U939 Firmware | < 2.23 |
| Fujitsu | Lifebook U939x Firmware | < 2.26 |
| Fujitsu | Lifebook U9413 Firmware | < 2.12 |
| Fujitsu | Stylistic Q5010 Firmware | < 1.38 |
| Fujitsu | Stylistic Q509 Firmware | < 1.37 |
| Fujitsu | Stylistic Q7310 Firmware | < 2.27 |
Showing 50 of 191 affected configurations. See NVD for the full list.
References
- https://security.netapp.com/advisory/ntap-20240105-0002/Third Party Advisory
- https://www.insyde.com/security-pledgeVendor Advisory
- https://www.insyde.com/security-pledge/SA-2023053Vendor Advisory
- https://www.kb.cert.org/vuls/id/811862Third Party Advisory
- https://security.netapp.com/advisory/ntap-20240105-0002/Third Party Advisory
- https://www.insyde.com/security-pledgeVendor Advisory
- https://www.insyde.com/security-pledge/SA-2023053Vendor Advisory
- https://www.kb.cert.org/vuls/id/811862Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2023-40238?
How severe is CVE-2023-40238?
How do I fix CVE-2023-40238?
Are you affected by CVE-2023-40238?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
