CVE-2023-40238

Exp

A LogoFAIL issue was discovered in BmpDecoderDxe in Insyde InsydeH2O with kernel 5.2 before 05.28.47, 5.3 before 05.37.47, 5.4 before 05.45.47, 5.5 before 05.53.47, and 5.6 before 05.60.47 for certain Lenovo devices. Image parsing of crafted BMP logo files can copy data to a specific address during the DXE phase of UEFI execution. This occurs because of an integer signedness error involving PixelHeight and PixelWidth during RLE4/RLE8 compression.

Published: 2023-12-07 Last update: 2026-02-25 Assigner: [email protected] Source: [email protected]

Conclusion & alert: CVE-2023-40238 is rated Exploit Available (50/100): CVSS Medium severity, with low exploitation likelihood (EPSS 0.15%). Core evidence: 1 public exploit reference(s) are indexed (Exploit-DB). Mandatory action: Public exploits are available—assess exposure, apply mitigations, and prioritize patching.

Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.

Public exploit references (Exploit-DB) for CVE-2023-40238

EDB-ID Source Kind Published Link
nvd_ref exploit_tag Exploit-DB ↗

Exploit prediction scoring system (EPSS) score for CVE-2023-40238

EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).

# Date Old EPSS score New EPSS score Delta (New - Old)
1 2026-06-02 0.10% 0.15% +0.05%
2 2025-11-21 0.03% 0.10% +0.07%
3 2025-11-18 0.03%

Full EPSS history (7 records total)

Common vulnerability scoring system (CVSS) metrics for CVE-2023-40238

CVSS metrics for this CVE.

Base score Version Severity Vector Exploitability Impact Score source
5.5 3.1 MEDIUM
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H Click to expand
Attack vector (AV:L)
They already need access on the box, or another person has to do something wrong; it’s not a remote drive-by.
Attack complexity (AC:L)
Once they can reach the bug, pulling it off is straightforward—no weird race conditions or rare setup.
Privileges required (PR:L)
A normal user session is enough; they don’t have to be admin.
User interaction (UI:N)
Nobody has to click “OK” or open a trap file; it can work without a victim helping.
Scope (S:U)
Damage stays in the same “trust bubble” as the broken component—no big spill into unrelated systems.
Confidentiality (C:N)
Doesn’t really leak secrets in a meaningful way.
Integrity (I:N)
Data isn’t meaningfully altered or forged.
Availability (A:H)
Could take the service down hard or make it unusable for people who depend on it.
1.8 3.6 [email protected]
5.5 3.1 MEDIUM
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H Click to expand
Attack vector (AV:L)
They already need access on the box, or another person has to do something wrong; it’s not a remote drive-by.
Attack complexity (AC:L)
Once they can reach the bug, pulling it off is straightforward—no weird race conditions or rare setup.
Privileges required (PR:L)
A normal user session is enough; they don’t have to be admin.
User interaction (UI:N)
Nobody has to click “OK” or open a trap file; it can work without a victim helping.
Scope (S:U)
Damage stays in the same “trust bubble” as the broken component—no big spill into unrelated systems.
Confidentiality (C:N)
Doesn’t really leak secrets in a meaningful way.
Integrity (I:N)
Data isn’t meaningfully altered or forged.
Availability (A:H)
Could take the service down hard or make it unusable for people who depend on it.
1.8 3.6 134c704f-9b21-4f2e-91b3-4a467353bcc0

Weakness enumeration for CVE-2023-40238

Affected software / configurations for CVE-2023-40238

Vendor Product Version Raw CPE
fujitsu esprimo_d556\/2_firmware < 1.35.0 cpe:2.3:o:fujitsu:esprimo_d556\/2_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_d6011_firmware < 1.31.0 cpe:2.3:o:fujitsu:esprimo_d6011_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_d6012_firmware < 3.08.0 cpe:2.3:o:fujitsu:esprimo_d6012_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_d7010_firmware < 1.64.0 cpe:2.3:o:fujitsu:esprimo_d7010_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_d7010\/8_firmware < 1.64.0 cpe:2.3:o:fujitsu:esprimo_d7010\/8_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_d7011_firmware < 1.31.0 cpe:2.3:o:fujitsu:esprimo_d7011_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_d7012_firmware < 3.08.0 cpe:2.3:o:fujitsu:esprimo_d7012_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_d7013_firmware < 3.08.0 cpe:2.3:o:fujitsu:esprimo_d7013_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_d738_firmware < 1.38.0 cpe:2.3:o:fujitsu:esprimo_d738_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_d757_firmware < 1.35.0 cpe:2.3:o:fujitsu:esprimo_d757_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_d9010_firmware < 1.64.0 cpe:2.3:o:fujitsu:esprimo_d9010_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_d9011_firmware < 1.31.0 cpe:2.3:o:fujitsu:esprimo_d9011_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_d9012_firmware < 3.08.0 cpe:2.3:o:fujitsu:esprimo_d9012_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_d9013_firmware < 3.08.0 cpe:2.3:o:fujitsu:esprimo_d9013_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_d957_firmware < 1.35.0 cpe:2.3:o:fujitsu:esprimo_d957_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_d957\/e9x\+_firmware < 1.35.0 cpe:2.3:o:fujitsu:esprimo_d957\/e9x\+_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_d958_firmware < 1.38.0 cpe:2.3:o:fujitsu:esprimo_d958_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_g5010_firmware < 1.45.0 cpe:2.3:o:fujitsu:esprimo_g5010_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_g5011_firmware < 1.27.0 cpe:2.3:o:fujitsu:esprimo_g5011_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_g558_firmware < 1.38.0 cpe:2.3:o:fujitsu:esprimo_g558_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_g6012_firmware < 3.08.0 cpe:2.3:o:fujitsu:esprimo_g6012_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_g9010_firmware < 1.45.0 cpe:2.3:o:fujitsu:esprimo_g9010_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_g9012_firmware < 3.08.0 cpe:2.3:o:fujitsu:esprimo_g9012_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_g9013_firmware < 3.08.0 cpe:2.3:o:fujitsu:esprimo_g9013_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_k5010\/24_firmware < 1.64.0 cpe:2.3:o:fujitsu:esprimo_k5010\/24_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_k557\/24_firmware < 1.18.0 cpe:2.3:o:fujitsu:esprimo_k557\/24_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_k558\/24_firmware < 1.38.0 cpe:2.3:o:fujitsu:esprimo_k558\/24_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_p5010_firmware < 1.64.0 cpe:2.3:o:fujitsu:esprimo_p5010_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_p5011_firmware < 1.31.0 cpe:2.3:o:fujitsu:esprimo_p5011_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_p557_firmware < 1.35.0 cpe:2.3:o:fujitsu:esprimo_p557_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_p558\/power_firmware < 1.38.0 cpe:2.3:o:fujitsu:esprimo_p558\/power_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_p6012_firmware < 3.08.0 cpe:2.3:o:fujitsu:esprimo_p6012_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_p7010_firmware < 1.64.0 cpe:2.3:o:fujitsu:esprimo_p7010_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_p7011_firmware < 1.31.0 cpe:2.3:o:fujitsu:esprimo_p7011_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_p7012_firmware < 3.08.0 cpe:2.3:o:fujitsu:esprimo_p7012_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_p7013_firmware < 3.08.0 cpe:2.3:o:fujitsu:esprimo_p7013_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_p757_firmware < 1.35.0 cpe:2.3:o:fujitsu:esprimo_p757_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_p758_firmware < 1.38.0 cpe:2.3:o:fujitsu:esprimo_p758_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_p9010_firmware <= 1.64.0 cpe:2.3:o:fujitsu:esprimo_p9010_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_p9011_firmware < 1.31.0 cpe:2.3:o:fujitsu:esprimo_p9011_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_p9012_firmware < 3.08.0 cpe:2.3:o:fujitsu:esprimo_p9012_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_p9013_firmware < 3.08.0 cpe:2.3:o:fujitsu:esprimo_p9013_firmware:*:*:*:*:*:*:*:*
fujitsu esprimo_p957_firmware < 1.35.0 cpe:2.3:o:fujitsu:esprimo_p957_firmware:*:*:*:*:*:*:*:*
fujitsu lifebook_u9313x_firmware < 2.12 cpe:2.3:o:fujitsu:lifebook_u9313x_firmware:*:*:*:*:*:*:*:*
fujitsu lifebook_u939_firmware < 2.23 cpe:2.3:o:fujitsu:lifebook_u939_firmware:*:*:*:*:*:*:*:*
fujitsu lifebook_u939x_firmware < 2.26 cpe:2.3:o:fujitsu:lifebook_u939x_firmware:*:*:*:*:*:*:*:*
fujitsu lifebook_u9413_firmware < 2.12 cpe:2.3:o:fujitsu:lifebook_u9413_firmware:*:*:*:*:*:*:*:*
fujitsu stylistic_q5010_firmware < 1.38 cpe:2.3:o:fujitsu:stylistic_q5010_firmware:*:*:*:*:*:*:*:*
fujitsu stylistic_q509_firmware < 1.37 cpe:2.3:o:fujitsu:stylistic_q509_firmware:*:*:*:*:*:*:*:*
fujitsu stylistic_q7310_firmware < 2.27 cpe:2.3:o:fujitsu:stylistic_q7310_firmware:*:*:*:*:*:*:*:*
fujitsu stylistic_q7311_firmware < 2.36 cpe:2.3:o:fujitsu:stylistic_q7311_firmware:*:*:*:*:*:*:*:*
fujitsu stylistic_q7312_firmware < 2.17 cpe:2.3:o:fujitsu:stylistic_q7312_firmware:*:*:*:*:*:*:*:*
fujitsu stylistic_q739_firmware < 2.21 cpe:2.3:o:fujitsu:stylistic_q739_firmware:*:*:*:*:*:*:*:*
fujitsu primequest_3800b_firmware < 2.23.0 cpe:2.3:o:fujitsu:primequest_3800b_firmware:*:*:*:*:*:*:*:*
fujitsu primequest_3800b2_firmware < 1.67.0 cpe:2.3:o:fujitsu:primequest_3800b2_firmware:*:*:*:*:*:*:*:*
fujitsu primequest_3800e_firmware < pa25021 cpe:2.3:o:fujitsu:primequest_3800e_firmware:*:*:*:*:*:*:*:*
fujitsu primequest_3800e2_firmware < pb25021 cpe:2.3:o:fujitsu:primequest_3800e2_firmware:*:*:*:*:*:*:*:*
fujitsu primequest_4400e_firmware < fa17001 cpe:2.3:o:fujitsu:primequest_4400e_firmware:*:*:*:*:*:*:*:*
fujitsu primergy_bx2560_m2_firmware < 1.21.0 cpe:2.3:o:fujitsu:primergy_bx2560_m2_firmware:*:*:*:*:*:*:*:*
fujitsu primergy_bx2580_m2_firmware < 1.21.0 cpe:2.3:o:fujitsu:primergy_bx2580_m2_firmware:*:*:*:*:*:*:*:*
fujitsu primergy_cx2550_m4_firmware < 1.51.0 cpe:2.3:o:fujitsu:primergy_cx2550_m4_firmware:*:*:*:*:*:*:*:*
fujitsu primergy_cx2550_m5_firmware < 1.25.0 cpe:2.3:o:fujitsu:primergy_cx2550_m5_firmware:*:*:*:*:*:*:*:*
fujitsu primergy_cx2550_m6_firmware < 1.34.0 cpe:2.3:o:fujitsu:primergy_cx2550_m6_firmware:*:*:*:*:*:*:*:*
fujitsu primergy_cx2550_m7_firmware < 2.6.0 cpe:2.3:o:fujitsu:primergy_cx2550_m7_firmware:*:*:*:*:*:*:*:*
fujitsu primergy_cx2560_m4_firmware < 1..51.0 cpe:2.3:o:fujitsu:primergy_cx2560_m4_firmware:*:*:*:*:*:*:*:*
fujitsu primergy_cx2560_m5_firmware < 1.34.0 cpe:2.3:o:fujitsu:primergy_cx2560_m5_firmware:*:*:*:*:*:*:*:*
fujitsu primergy_cx2560_m6_firmware < 1.34.0 cpe:2.3:o:fujitsu:primergy_cx2560_m6_firmware:*:*:*:*:*:*:*:*
fujitsu primergy_cx2560_m7_firmware < 2.2.0 cpe:2.3:o:fujitsu:primergy_cx2560_m7_firmware:*:*:*:*:*:*:*:*
fujitsu primergy_cx2570_m4_firmware < 1.51.0 cpe:2.3:o:fujitsu:primergy_cx2570_m4_firmware:*:*:*:*:*:*:*:*
fujitsu primergy_cx2570_m5_firmware < 1.25.0 cpe:2.3:o:fujitsu:primergy_cx2570_m5_firmware:*:*:*:*:*:*:*:*
fujitsu primergy_gx2460_m1_firmware < 7.11.3 cpe:2.3:o:fujitsu:primergy_gx2460_m1_firmware:*:*:*:*:*:*:*:*
fujitsu primergy_gx2560_m7_firmware < 2.6.0 cpe:2.3:o:fujitsu:primergy_gx2560_m7_firmware:*:*:*:*:*:*:*:*
fujitsu primergy_gx2570_m6_firmware < 1.9 cpe:2.3:o:fujitsu:primergy_gx2570_m6_firmware:*:*:*:*:*:*:*:*
fujitsu primergy_rx1330_m3_firmware < 1.39.0 cpe:2.3:o:fujitsu:primergy_rx1330_m3_firmware:*:*:*:*:*:*:*:*
fujitsu primergy_rx1330_m4_firmware < 1.30.0 cpe:2.3:o:fujitsu:primergy_rx1330_m4_firmware:*:*:*:*:*:*:*:*
fujitsu primergy_rx1330_m5_firmware < 1.50.0 cpe:2.3:o:fujitsu:primergy_rx1330_m5_firmware:*:*:*:*:*:*:*:*
fujitsu primergy_rx1440_m2_firmware < 1.6.0 cpe:2.3:o:fujitsu:primergy_rx1440_m2_firmware:*:*:*:*:*:*:*:*
fujitsu primergy_rx2450_m1_firmware < 3.0 cpe:2.3:o:fujitsu:primergy_rx2450_m1_firmware:*:*:*:*:*:*:*:*
fujitsu primergy_rx2450_m2_firmware < 1.6.0 cpe:2.3:o:fujitsu:primergy_rx2450_m2_firmware:*:*:*:*:*:*:*:*
fujitsu primergy_rx2520_m4_firmware < 1.63.0 cpe:2.3:o:fujitsu:primergy_rx2520_m4_firmware:*:*:*:*:*:*:*:*

References for CVE-2023-40238

cvelogic Threat Intelligence