The vendor explicitly identifies these products as affected by this CVE.
- SIMATIC Field PG M5 < V22.01.10
- SIMATIC Field PG M6 < V26.01.13
- SIMATIC IPC127E < V27.01.09
- SIMATIC IPC227G < V28.01.04
- SIMATIC IPC277G < V28.01.04
- SIMATIC IPC277G PRO < V28.01.04
- SIMATIC IPC327G < V28.01.04
- SIMATIC IPC377G < V28.01.04
- SIMATIC IPC427E < V21.01.17
- SIMATIC IPC477E < V21.01.17
- SIMATIC IPC477E PRO < V21.01.17
- SIMATIC IPC627E < V25.02.12
- Summary
- A vulnerability exists in System Management Interrupt (SWSMI) handler of InsydeH2O UEFI Firmware code located in SWSMI handler that dereferences gRT (EFI_RUNTIME_SERVICES) pointer to call a GetVariable service, which is located outside of SMRAM. This can result in code execution in SMM (escalating privilege from ring 0 to ring -2).
- Remediation
- Update to V21.01.17 or later version
