CVE-2023-20563
published 2023-11-14CVE-2023-20563: Insufficient protections in System Management Mode (SMM) code may allow an attacker to potentially enable escalation of privilege via local access.
PriorityP337high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.20%
10.4th percentile
Insufficient protections in System Management Mode (SMM) code may allow an attacker to potentially enable escalation of privilege via local access.
Affected
83 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| amd | amd_ryzen_5000_series_processors_with_radeon_graphics_barcelo | — | — |
| amd | amd_ryzen_6000_series_processors_with_radeon_graphics_rembrandt | — | — |
| amd | amd_ryzen_7030_series_mobile_processors_with_radeon_graphics_barcelo-r | — | — |
| amd | amd_ryzen_7035_series_processors_with_radeon_graphics_rembrandt-r | — | — |
| amd | amd_ryzen_embedded_5000 | — | — |
| amd | amd_ryzen_embedded_r1000 | — | — |
| amd | amd_ryzen_embedded_r2000 | — | — |
| amd | amd_ryzen_embedded_v3000 | — | — |
| amd | ryzen_3_5100_firmware | < comboam4v2_1.2.0.b | comboam4v2_1.2.0.b |
| amd | ryzen_3_5125c_firmware | < cezannepi-fp6_1.0.0.f | cezannepi-fp6_1.0.0.f |
| amd | ryzen_3_5300g_firmware | < comboam4v2_1.2.0.b | comboam4v2_1.2.0.b |
| amd | ryzen_3_5300ge_firmware | < comboam4v2_1.2.0.b | comboam4v2_1.2.0.b |
| amd | ryzen_3_5400u_firmware | < cezannepi-fp6_1.0.0.f | cezannepi-fp6_1.0.0.f |
| amd | ryzen_3_5425u_firmware | < cezannepi-fp6_1.0.0.f | cezannepi-fp6_1.0.0.f |
| amd | ryzen_3_7335u_firmware | < rembrandtpi-fp7_1.0.0.9 | rembrandtpi-fp7_1.0.0.9 |
| amd | ryzen_3_pro_7330u_firmware | < cezannepi-fp6_1.0.0.f | cezannepi-fp6_1.0.0.f |
| amd | ryzen_3_pro_7440u_firmware | < phoenixpi-fp8-fp7_pi_1.0.0.1g | phoenixpi-fp8-fp7_pi_1.0.0.1g |
| amd | ryzen_5000_series_desktop_processor_with_radeon_graphics_cezanne | — | — |
| amd | ryzen_5000_series_mobile_processors_with_radeon_graphics_cezanne | — | — |
| amd | ryzen_5_5500_firmware | < comboam4v2_1.2.0.b | comboam4v2_1.2.0.b |
| amd | ryzen_5_5500h_firmware | < cezannepi-fp6_1.0.0.f | cezannepi-fp6_1.0.0.f |
| amd | ryzen_5_5560u_firmware | < cezannepi-fp6_1.0.0.f | cezannepi-fp6_1.0.0.f |
| amd | ryzen_5_5600g_firmware | < comboam4v2_1.2.0.b | comboam4v2_1.2.0.b |
| amd | ryzen_5_5600ge_firmware | < comboam4v2_1.2.0.b | comboam4v2_1.2.0.b |
| amd | ryzen_5_5600h_firmware | < cezannepi-fp6_1.0.0.f | cezannepi-fp6_1.0.0.f |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2023-11-14
Published