UEFI firmware vulnerabilities affect at least 25 computer vendors

In this article from BleepingComputer, researchers have found 23 flaws in the InsydeH2O UEFI firmware. Expect firmware updates to be released. It will be critical to apply these to your systems. 3 of the flaws are rated a critical severity score of 9.8 out of 10. The 23 flaws are tracked as: CVE-2020-27339, CVE-2020-5953, CVE-2021-33625, CVE-2021-33626, CVE-2021-33627, CVE-2021-41837, CVE-2021-41838, CVE-2021-41839, CVE-2021-41840, CVE-2021-41841, CVE-2021-42059, CVE-2021-42060, CVE-2021-42113, CVE-2021-42554, CVE-2021-43323, CVE-2021-43522, CVE-2021-43615, CVE-2021-45969, CVE-2021-45970, CVE-2021-45971, CVE-2022-24030, CVE-2022-24031, CVE-2022-24069.

Eric Henry

Eric Henry founded Epic IT Support in 2019. He brings over 20 years of technology experience and numerous distinguished certifications to the organization. After successfully growing and exiting a prior Managed Service Provider, he saw what needed to change given the ever-increasing demands of IT combined with the evolving threat landscape. Epic IT Support specializes in Cybersecurity and Identity and Access Management.

Before Epic IT Support, he co-founded Helixstorm, a Southern California Managed Service Provider, in 2007. As Chief Technology Officer and Principal Architect, he specialized in IT infrastructure planning, design, and implementation.

Before that, Mr. Henry owned an IT enterprise consulting firm focused on SAN Storage, HP-UX, Solaris, Linux, HA, and DR solutions. He has also worked with esteemed organizations like Intuit, Fox Broadcasting, Best Western, Mail Boxes Etc., US Federal Government, and other enterprise-class clientele worldwide.

With a robust Cybersecurity and IT infrastructure background, Mr. Henry delivers solutions to small, medium, and enterprise-sized businesses. He holds certifications in many products and technologies.

The Computerworld Honors Program recognized Mr. Henry and Helixstorm as a 2011 Laureate for designing and implementing a High Availability Storage project. Selected from more than 1,000 entries, Helixstorm’s High Availability project for the American Society of Health-System Pharmacists (ASHP) was the winning entry.

Mr. Henry served as a Sergeant and Air Control Electronics Operator in the United States Marine Corps. He studied Aerospace Engineering at the University of Arizona.

https://epicit.support
Previous
Previous

Lapsus$ hacking group claiming they breached Okta for access to their customers.