cbcvebase.
CVE-2022-23829
published 2024-06-18

CVE-2022-23829: A potential weakness in AMD SPI protection features may allow a malicious attacker with Ring0 (kernel mode) access to bypass the native System Management Mode…

high8.2CVSS 3.1
AVLACLPRHUINSCCHIHAH
A potential weakness in AMD SPI protection features may allow a malicious attacker with Ring0 (kernel mode) access to bypass the native System Management Mode (SMM) ROM protections.

Affected

24 ranges
VendorProductVersion rangeFixed in
amd1st_gen_amd_epyc_processors
amd2nd_gen_amd_epyc_processors
amd3rd_gen_amd_epyc_processors
amdamd_athlon_3000_series_mobile_processors_with_radeon_graphics
amdamd_epyc_embedded_3000
amdamd_epyc_embedded_7002
amdamd_epyc_embedded_7003
amdamd_ryzen_3000_series_desktop_processors
amdamd_ryzen_3000_series_mobile_processor_2nd_gen_amd_ryzen_mobile_processor_with_r
amdamd_ryzen_4000_series_desktop_processors_with_radeon_graphics
amdamd_ryzen_4000_series_mobile_processors
amdamd_ryzen_5000_series_desktop_processors
amdamd_ryzen_5000_series_mobile_processors
amdamd_ryzen_5000_series_mobile_processors_with_radeon_graphics
amdamd_ryzen_6000_series_mobile_processors_and_workstations
amdamd_ryzen_7000_series_desktop_processors
amdamd_ryzen_threadripper_pro_processor
amdamd_ryzen_threadripper_pro_processors_5900_wx-series
amdamd_ryzentm_embedded_5000
amdamd_ryzentm_embedded_r1000
amdamd_ryzentm_embedded_r2000
amdamd_ryzentm_embedded_v1000
amdamd_ryzentm_embedded_v2000
amdamd_ryzentm_embedded_v3000