cbcvebase.
CVE-2023-20520
published 2023-05-09

CVE-2023-20520: Improper access control settings in ASP Bootloader may allow an attacker to corrupt the return address causing a stack-based buffer overrun potentially leading…

critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
Improper access control settings in ASP Bootloader may allow an attacker to corrupt the return address causing a stack-based buffer overrun potentially leading to arbitrary code execution.

Affected

66 ranges· showing 25
VendorProductVersion rangeFixed in
amd1st_gen_amd_epyc
amd2nd_gen_amd_epyc
amd3rd_gen_amd_epyc
amdepyc_7232p_firmware
amdepyc_7251_firmware
amdepyc_7252_firmware
amdepyc_7261_firmware
amdepyc_7262_firmware
amdepyc_7272_firmware
amdepyc_7281_firmware
amdepyc_7282_firmware
amdepyc_72f3_firmware
amdepyc_7301_firmware
amdepyc_7302_firmware
amdepyc_7302p_firmware
amdepyc_7313_firmware
amdepyc_7313p_firmware
amdepyc_7343_firmware
amdepyc_7351_firmware
amdepyc_7351p_firmware
amdepyc_7352_firmware
amdepyc_7371_firmware
amdepyc_7373x_firmware
amdepyc_73f3_firmware
amdepyc_7401_firmware