CVE-2024-36355

SMM - Memory Corruption

Title source: llm

Description

Improper input validation in the SMM handler could allow an attacker with Ring0 access to write to SMRAM and modify execution flow for S3 (sleep) wake up, potentially resulting in arbitrary code execution.

Scores

EPSS 0.0001
EPSS Percentile 0.6%

Classification

CWE
CWE-787
Status draft

Timeline

Published Feb 10, 2026
Tracked Since Feb 18, 2026