Amd 3Rd Gen Amd Epyc Processors vulnerabilities
26 known vulnerabilities affecting amd/3rd_gen_amd_epyc_processors.
Total CVEs
26
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL2HIGH9MEDIUM13LOW2
Vulnerabilities
Page 1 of 2
CVE-2023-31315HIGHCVSS 7.5≥ various, < Milan PI 1.0.0.D2024-08-12
CVE-2023-31315 [HIGH] CWE-94 CVE-2023-31315: Improper validation in a model specific register (MSR) could allow a malicious program with ring0 ac
Improper validation in a model specific register (MSR) could allow a malicious program with ring0 access to modify SMM configuration while SMI lock is enabled, potentially leading to arbitrary code execution.
cvelistv5nvd
CVE-2024-21978HIGHCVSS 7.9≥ various, < MilanPI 1.0.0.D2024-08-05
CVE-2024-21978 [HIGH] CWE-20 CVE-2024-21978: Improper input validation in SEV-SNP could allow a malicious hypervisor to read or overwrite guest m
Improper input validation in SEV-SNP could allow a malicious hypervisor to read or overwrite guest memory potentially leading to data leakage or data corruption.
cvelistv5nvd
CVE-2024-21980HIGHCVSS 7.9≥ various, < MilanPI 1.0.0.D2024-08-05
CVE-2024-21980 [HIGH] CWE-119 CVE-2024-21980: Improper restriction of write operations in SNP firmware could allow a malicious hypervisor to poten
Improper restriction of write operations in SNP firmware could allow a malicious hypervisor to potentially overwrite a guest's memory or UMC seed resulting in loss of confidentiality and integrity.
cvelistv5nvd
CVE-2023-31355MEDIUMCVSS 6.0≥ various, < MilanPI 1.0.0.D2024-08-05
CVE-2023-31355 [MEDIUM] CWE-119 CVE-2023-31355: Improper restriction of write operations in SNP firmware could allow a malicious hypervisor to overw
Improper restriction of write operations in SNP firmware could allow a malicious hypervisor to overwrite a guest's UMC seed potentially allowing reading of memory from a decommissioned guest.
cvelistv5nvd
CVE-2022-23829HIGHCVSS 8.2vvarious2024-06-18
CVE-2022-23829 [HIGH] CWE-284 CVE-2022-23829: A potential weakness in AMD SPI protection features may allow a malicious attacker with Ring0 (kerne
A potential weakness in AMD SPI protection features may allow a malicious attacker with Ring0 (kernel mode) access to bypass the native System Management Mode (SMM) ROM protections.
cvelistv5nvd
CVE-2023-20587HIGHCVSS 7.1vvarious 2024-02-13
CVE-2023-20587 [HIGH] CWE-284 CVE-2023-20587: Improper
Access Control in System Management Mode (SMM) may allow an attacker access to
the SPI flas
Improper
Access Control in System Management Mode (SMM) may allow an attacker access to
the SPI flash potentially leading to arbitrary code execution.
cvelistv5nvd
CVE-2023-31346MEDIUMCVSS 6.0vvarious 2024-02-13
CVE-2023-31346 [MEDIUM] CWE-284 CVE-2023-31346: Failure to initialize
memory in SEV Firmware may allow a privileged attacker to access stale data
fr
Failure to initialize
memory in SEV Firmware may allow a privileged attacker to access stale data
from other guests.
cvelistv5nvd
CVE-2023-31347MEDIUMCVSS 4.9vvarious 2024-02-13
CVE-2023-31347 [MEDIUM] CWE-682 CVE-2023-31347: Due to a code bug in
Secure_TSC, SEV firmware may allow an attacker with high privileges to cause a
Due to a code bug in
Secure_TSC, SEV firmware may allow an attacker with high privileges to cause a
guest to observe an incorrect TSC when Secure TSC is enabled potentially
resulting in a loss of guest integrity.
cvelistv5nvd
CVE-2023-20573LOWCVSS 3.2vvarious 2024-01-11
CVE-2023-20573 [LOW] CWE-693 CVE-2023-20573: A privileged attacker
can prevent delivery of debug exceptions to SEV-SNP guests potentially
resulti
A privileged attacker
can prevent delivery of debug exceptions to SEV-SNP guests potentially
resulting in guests not receiving expected debug information.
cvelistv5nvd
CVE-2022-23820CRITICALCVSS 9.8vvarious2023-11-14
CVE-2022-23820 [CRITICAL] CWE-20 CVE-2022-23820: Failure to validate the AMD SMM communication buffer
may allow an attacker to corrupt the SMRAM pote
Failure to validate the AMD SMM communication buffer
may allow an attacker to corrupt the SMRAM potentially leading to arbitrary
code execution.
cvelistv5nvd
CVE-2021-46774HIGHCVSS 7.5vvarious2023-11-14
CVE-2021-46774 [HIGH] CVE-2021-46774: Insufficient DRAM address validation in System
Management Unit (SMU) may allow an attacker to read/w
Insufficient DRAM address validation in System
Management Unit (SMU) may allow an attacker to read/write from/to an invalid
DRAM address, potentially resulting in denial-of-service.
cvelistv5nvd
CVE-2023-20533HIGHCVSS 7.5vvarious2023-11-14
CVE-2023-20533 [HIGH] CVE-2023-20533: Insufficient DRAM address validation in System
Management Unit (SMU) may allow an attacker to read/w
Insufficient DRAM address validation in System
Management Unit (SMU) may allow an attacker to read/write from/to an invalid
DRAM address, potentially resulting in denial-of-service.
cvelistv5nvd
CVE-2023-20566HIGHCVSS 7.5vvarious2023-11-14
CVE-2023-20566 [HIGH] CVE-2023-20566: Improper address validation in ASP with SNP enabled may potentially allow an attacker to compromise
Improper address validation in ASP with SNP enabled may potentially allow an attacker to compromise guest memory integrity.
cvelistv5nvd
CVE-2021-26345MEDIUMCVSS 4.9vvarious2023-11-14
CVE-2021-26345 [MEDIUM] CWE-125 CVE-2021-26345: Failure to validate the value in APCB may allow a privileged attacker to tamper with the APCB token
Failure to validate the value in APCB may allow a privileged attacker to tamper with the APCB token to force an out-of-bounds memory read potentially resulting in a denial of service.
cvelistv5nvd
CVE-2022-23830MEDIUMCVSS 5.3vvarious2023-11-14
CVE-2022-23830 [MEDIUM] CVE-2022-23830: SMM configuration may not be immutable, as intended, when SNP is enabled resulting in a potential li
SMM configuration may not be immutable, as intended, when SNP is enabled resulting in a potential limited loss of guest memory integrity.
cvelistv5nvd
CVE-2023-20526MEDIUMCVSS 4.6vvarious2023-11-14
CVE-2023-20526 [MEDIUM] CVE-2023-20526: Insufficient input validation in the ASP Bootloader may enable a privileged attacker with physical a
Insufficient input validation in the ASP Bootloader may enable a privileged attacker with physical access to expose the contents of ASP memory potentially leading to a loss of confidentiality.
cvelistv5nvd
CVE-2023-20592MEDIUMCVSS 6.5vvarious 2023-11-14
CVE-2023-20592 [MEDIUM] CVE-2023-20592: Improper or unexpected behavior of the INVD instruction in some AMD CPUs may allow an attacker with
Improper or unexpected behavior of the INVD instruction in some AMD CPUs may allow an attacker with a malicious hypervisor to affect cache line write-back behavior of the CPU leading to a potential loss of guest virtual machine (VM) memory integrity.
cvelistv5nvd
CVE-2023-20521MEDIUMCVSS 5.7vvarious2023-11-14
CVE-2023-20521 [MEDIUM] CWE-367 CVE-2023-20521: TOCTOU in the ASP Bootloader may allow an attacker with physical access to tamper with SPI ROM recor
TOCTOU in the ASP Bootloader may allow an attacker with physical access to tamper with SPI ROM records after memory content verification, potentially leading to loss of confidentiality or a denial of service.
cvelistv5nvd
CVE-2023-20519LOWCVSS 3.3vvarious 2023-11-14
CVE-2023-20519 [LOW] CWE-416 CVE-2023-20519: A Use-After-Free vulnerability in the management of an SNP guest context page may allow a malicious
A Use-After-Free vulnerability in the management of an SNP guest context page may allow a malicious hypervisor to masquerade as the guest's migration agent resulting in a potential loss of guest integrity.
cvelistv5nvd
CVE-2023-20594MEDIUMCVSS 4.4vvarious2023-09-20
CVE-2023-20594 [MEDIUM] CWE-824 CVE-2023-20594: Improper initialization of variables in the DXE driver may allow a privileged user to leak sensitive
Improper initialization of variables in the DXE driver may allow a privileged user to leak sensitive information via local access.
cvelistv5nvd
1 / 2Next →