
Oktoberfest in the news: How people around see beer's birthday
Section: Arts
The Computer Emergency Response Team (CERT) has issued a warning regarding significant security vulnerabilities found in the UEFI firmware of various Gigabyte motherboards. These vulnerabilities could allow attackers to escalate their privileges within the system. Gigabyte has made BIOS updates available for multiple motherboard models to address these security concerns.
The vulnerabilities specifically affect the System Management Mode (SMM), a high-privileged CPU mode that interacts directly with system hardware and is critical for fundamental operating system functions. CERT explains that an attacker could exploit one or more of these vulnerabilities to gain elevated privileges and execute arbitrary code within the SMM environment of UEFI-supported processors.
According to a statement from AMI, the BIOS manufacturer, these vulnerabilities had been patched in the past but have resurfaced in the Gigabyte firmware, prompting this public advisory.
In SMM, commands operate in a protected memory area known as System Management RAM (SMRAM), which is only accessible through System Management Interrupts (SMI). CERT details that insufficient validation of data passed through specific communication buffers can lead to serious security risks, including SMRAM manipulations and unauthorized SMM executions. Attackers can misuse SMI handlers to run arbitrary code early in the boot process, during recovery modes, or prior to the full operating system loading.
Security researchers from Binarly have identified four critical vulnerabilities related to the exploitation of SMM. These include:
Binarly's findings indicate that at least 80 different Gigabyte motherboard models are affected, including some older versions. A preliminary review shows that Gigabyte has issued numerous BIOS updates in June, aimed at rectifying these vulnerabilities.
Separately, recent issues with AMD's firmware TPM (fTPM) have also come to light, for which AMD has been providing fixes for several years. However, many manufacturers have not included these corrections in their updated BIOS releases.
Section: Arts
Section: Business
Section: Business
Section: Arts
Section: Health
Section: Arts
Section: News
Section: News
Section: Arts
Section: Business
Health Insurance in Germany is compulsory and sometimes complicated, not to mention expensive. As an expat, you are required to navigate this landscape within weeks of arriving, so check our FAQ on PKV. For our guide on resources and access to agents who can give you a competitive quote, try our PKV Cost comparison tool.
Germany is famous for its medical expertise and extensive number of hospitals and clinics. See this comprehensive directory of hospitals and clinics across the country, complete with links to their websites, addresses, contact info, and specializations/services.
One of the most beautiful squares transforms into a summer stage every year for two days. The Gärtnerplatz Open-Air features a free music and cultural program across three stages, as well as street food from local vendors. On Saturday, the main stage at Gärtnerplatz offers something for everyone,...
No comments yet. Be the first to comment!