CVE-2025-22830 HIGH

CVE-2025-22830: SmiFlash Race Condition Vulnerability

Vendor Ami
Product AptioV
Weakness CWE-362
Published August 12, 2025
Last update August 12, 2025

CVSS base score

7.3/10
Attack vector Local
Attack complexity Low
Privileges required High
User interaction
Confidentiality
Integrity

CVSS vector

CVSS:4.0/AV:L/AC:L/AT:P/PR:H/UI:A/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H

What the vulnerability does

01Description

APTIOV contains a vulnerability in BIOS where a skilled user may cause “Race Condition” by local access. A successful exploitation of this vulnerability may lead to resource exhaustion and impact Confidentiality, Integrity, and Availability.

Key dates

02Disclosure timeline

August 12, 2025 CVE published
August 12, 2025 Record updated