cbcvebase.
CVE-2023-20522
published 2023-01-11

CVE-2023-20522: Insufficient input validation in ASP may allow an attacker with a malicious BIOS to potentially cause a denial of service.

high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
Insufficient input validation in ASP may allow an attacker with a malicious BIOS to potentially cause a denial of service.

Affected

4 ranges
VendorProductVersion rangeFixed in
amd2nd_gen_epyc
amd3rd_gen_epyc
amdmilanpi_firmware< 1.0.0.51.0.0.5
amdromepi_firmware< 100d100d