CVE-2022-30426

HIGH

Acer Altos T110 F3 Firmware <= P13 - Out-of-bounds Write

Title source: llm
STIX 2.1

Description

There is a stack buffer overflow vulnerability, which could lead to arbitrary code execution in UEFI DXE driver on some Acer products. An attack could exploit this vulnerability to escalate privilege from ring 3 to ring 0, and hijack control flow during UEFI DXE execution. This affects Altos T110 F3 firmware version <= P13 (latest) and AP130 F2 firmware version <= P04 (latest) and Aspire 1600X firmware version <= P11.A3L (latest) and Aspire 1602M firmware version <= P11.A3L (latest) and Aspire 7600U firmware version <= P11.A4 (latest) and Aspire MC605 firmware version <= P11.A4L (latest) and Aspire TC-105 firmware version <= P12.B0L (latest) and Aspire TC-120 firmware version <= P11-A4 (latest) and Aspire U5-620 firmware version <= P11.A1 (latest) and Aspire X1935 firmware version <= P11.A3L (latest) and Aspire X3475 firmware version <= P11.A3L (latest) and Aspire X3995 firmware version <= P11.A3L (latest) and Aspire XC100 firmware version <= P11.B3 (latest) and Aspire XC600 firmware version <= P11.A4 (latest) and Aspire Z3-615 firmware version <= P11.A2L (latest) and Veriton E430G firmware version <= P21.A1 (latest) and Veriton B630_49 firmware version <= AAP02SR (latest) and Veriton E430 firmware version <= P11.A4 (latest) and Veriton M2110G firmware version <= P21.A3 (latest) and Veriton M2120G fir.

References (3)

Core 3
Core References
Vendor Advisory x_refsource_misc
http://acer.com
Broken Link x_refsource_misc
http://altos.com

Scores

CVSS v3 7.8
EPSS 0.0041
EPSS Percentile 33.0%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation poc
Automatable no
Technical Impact total

Details

CWE
CWE-787
Status published
Products (34)
acer/altos_t110_f3_firmware < p13
acer/ap130_f2_firmware < p04
acer/aspire_1600x_firmware < p11.a3l
acer/aspire_1602m_firmware < p11.a3l
acer/aspire_7600u_firmware < p11.a4
acer/aspire_mc605_firmware < p11.a4l
acer/aspire_tc-105_firmware < p12.b0l
acer/aspire_tc-120_firmware < p11-a4
acer/aspire_u5-620_firmware < p11.a1
acer/aspire_x1935_firmware < p11.a3l
... and 24 more
Published Sep 23, 2022
Tracked Since Feb 18, 2026