cbcvebase.
CVE-2023-20593
published 2023-07-24

CVE-2023-20593: An issue in “Zen 2” CPUs, under specific microarchitectural circumstances, may allow an attacker to potentially access sensitive information.

PriorityP431medium5.5CVSS 3.1
AVLACLPRLUINSUCHINAN
EPSS
5.79%
92.3th percentile
An issue in “Zen 2” CPUs, under specific microarchitectural circumstances, may allow an attacker to potentially access sensitive information.

Affected

26 ranges· showing 25
VendorProductVersion rangeFixed in
amd2nd_gen_amd_epyc_processors
amd3rd_gen_amd_ryzen_threadripper_processors_castle_peak_hedt
amdamd_ryzen_4000_series_desktop_processors_with_radeon_graphics_renoir_am4
amdryzen_3000_series_desktop_processors_matisse_am4
amdryzen_4000_series_mobile_processors_with_radeon_graphics_renoir
amdryzen_5000_series_mobile_processors_with_radeon_graphics_lucienne
amdryzen_7020_series_processors_mendocino_ft6
amdryzen_threadripper_pro_processors_castle_peak_ws_sp3
debianamd64-microcode< amd64-microcode 3.20230719.1~deb12u1 (bookworm)amd64-microcode 3.20230719.1~deb12u1 (bookworm)
debiandebian_linux
debiandebian_linux
debiandebian_linux
debianlinux< amd64-microcode 3.20230719.1~deb12u1 (bookworm)amd64-microcode 3.20230719.1~deb12u1 (bookworm)
googlechrome_chrome
linuxlinux_kernel>= 0 < 5.10.179-35.10.179-3
linuxlinux_kernel>= 0 < 6.1.38-26.1.38-2
linuxlinux_kernel>= 0 < 6.4.4-26.4.4-2
linuxlinux_kernel>= 0 < 6.4.4-26.4.4-2
linuxlinux_kernel>= 0 < 5.4.0-159.1765.4.0-159.176
linuxlinux_kernel>= 0 < 5.15.0-82.915.15.0-82.91
linuxlinux_kernel>= 0 < 4.4.0-248.2824.4.0-248.282
linuxlinux_kernel>= 0 < 4.15.0-216.2274.15.0-216.227
xenxen
xenxen
xenxen

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
osv6.5MEDIUM
vendor_ubuntu6.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.