cbcvebase.

Amd 3Rd Gen Amd Epyc Processors vulnerabilities

26 known vulnerabilities affecting amd/3rd_gen_amd_epyc_processors.

Total CVEs
26
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL2HIGH9MEDIUM13LOW2

Vulnerabilities

Page 1 of 2
CVE-2022-23820P3CRITICALCVSS 9.8vvarious2023-11-14
CVE-2022-23820 [CRITICAL] CWE-20 CVE-2022-23820: Failure to validate the AMD SMM communication buffer may allow an attacker to corrupt the SMRAM pote Failure to validate the AMD SMM communication buffer may allow an attacker to corrupt the SMRAM potentially leading to arbitrary code execution.
nvd
CVE-2021-46756P3CRITICALCVSS 9.1vvarious 2023-05-09
CVE-2021-46756 [CRITICAL] CWE-20 CVE-2021-46756: Insufficient validation of inputs in SVC_MAP_USER_STACK in the ASP (AMD Secure Processor) bootloader Insufficient validation of inputs in SVC_MAP_USER_STACK in the ASP (AMD Secure Processor) bootloader may allow an attacker with a malicious Uapp or ABL to send malformed or invalid syscall to the bootloader resulting in a potential denial of service and loss of integrity.
nvd
CVE-2023-20566P3HIGHCVSS 7.5vvarious2023-11-14
CVE-2023-20566 [HIGH] CVE-2023-20566: Improper address validation in ASP with SNP enabled may potentially allow an attacker to compromise Improper address validation in ASP with SNP enabled may potentially allow an attacker to compromise guest memory integrity.
nvd
CVE-2022-23829P3HIGHCVSS 8.2vvarious2024-06-18
CVE-2022-23829 [HIGH] CWE-284 CVE-2022-23829: A potential weakness in AMD SPI protection features may allow a malicious attacker with Ring0 (kerne A potential weakness in AMD SPI protection features may allow a malicious attacker with Ring0 (kernel mode) access to bypass the native System Management Mode (SMM) ROM protections.
nvd
CVE-2021-26356P3HIGHCVSS 7.4vvarious 2023-05-09
CVE-2021-26356 [HIGH] CWE-367 CVE-2021-26356: A TOCTOU in ASP bootloader may allow an attacker to tamper with the SPI ROM following data read to m A TOCTOU in ASP bootloader may allow an attacker to tamper with the SPI ROM following data read to memory potentially resulting in S3 data corruption and information disclosure.
nvd
CVE-2024-21980P3HIGHCVSS 7.9≥ various, < MilanPI 1.0.0.D2024-08-05
CVE-2024-21980 [HIGH] CWE-119 CVE-2024-21980: Improper restriction of write operations in SNP firmware could allow a malicious hypervisor to poten Improper restriction of write operations in SNP firmware could allow a malicious hypervisor to potentially overwrite a guest's memory or UMC seed resulting in loss of confidentiality and integrity.
nvd
CVE-2023-31315P3HIGHCVSS 7.5≥ various, < Milan PI 1.0.0.D2024-08-12
CVE-2023-31315 [HIGH] CWE-94 CVE-2023-31315: Improper validation in a model specific register (MSR) could allow a malicious program with ring0 ac Improper validation in a model specific register (MSR) could allow a malicious program with ring0 access to modify SMM configuration while SMI lock is enabled, potentially leading to arbitrary code execution.
nvd
CVE-2021-46774P3HIGHCVSS 7.5vvarious2023-11-14
CVE-2021-46774 [HIGH] CVE-2021-46774: Insufficient DRAM address validation in System Management Unit (SMU) may allow an attacker to read/w Insufficient DRAM address validation in System Management Unit (SMU) may allow an attacker to read/write from/to an invalid DRAM address, potentially resulting in denial-of-service.
nvd
CVE-2023-20533P3HIGHCVSS 7.5vvarious2023-11-14
CVE-2023-20533 [HIGH] CVE-2023-20533: Insufficient DRAM address validation in System Management Unit (SMU) may allow an attacker to read/w Insufficient DRAM address validation in System Management Unit (SMU) may allow an attacker to read/write from/to an invalid DRAM address, potentially resulting in denial-of-service.
nvd
CVE-2024-21978P3HIGHCVSS 7.9≥ various, < MilanPI 1.0.0.D2024-08-05
CVE-2024-21978 [HIGH] CWE-20 CVE-2024-21978: Improper input validation in SEV-SNP could allow a malicious hypervisor to read or overwrite guest m Improper input validation in SEV-SNP could allow a malicious hypervisor to read or overwrite guest memory potentially leading to data leakage or data corruption.
nvd
CVE-2023-20587P3HIGHCVSS 7.1vvarious 2024-02-13
CVE-2023-20587 [HIGH] CWE-284 CVE-2023-20587: Improper Access Control in System Management Mode (SMM) may allow an attacker access to the SPI flas Improper Access Control in System Management Mode (SMM) may allow an attacker access to the SPI flash potentially leading to arbitrary code execution.
nvd
CVE-2023-20592P4MEDIUMCVSS 6.5vvarious 2023-11-14
CVE-2023-20592 [MEDIUM] CVE-2023-20592: Improper or unexpected behavior of the INVD instruction in some AMD CPUs may allow an attacker with Improper or unexpected behavior of the INVD instruction in some AMD CPUs may allow an attacker with a malicious hypervisor to affect cache line write-back behavior of the CPU leading to a potential loss of guest virtual machine (VM) memory integrity.
nvd
CVE-2023-20575P4MEDIUMCVSS 6.5vvarious 2023-07-11
CVE-2023-20575 [MEDIUM] CWE-203 CVE-2023-20575: A potential power side-channel vulnerability in some AMD processors may allow an authenticated atta A potential power side-channel vulnerability in some AMD processors may allow an authenticated attacker to use the power reporting functionality to monitor a program’s execution inside an AMD SEV VM potentially resulting in a leak of sensitive information.
nvd
CVE-2023-20569P4MEDIUMCVSS 4.7vvarious 2023-08-08
CVE-2023-20569 [MEDIUM] CWE-203 CVE-2023-20569: A side channel vulnerability on some of the AMD CPUs may allow an attacker to influence the retur A side channel vulnerability on some of the AMD CPUs may allow an attacker to influence the return address prediction. This may result in speculative execution at an attacker-controlled address, potentially leading to information disclosure.
nvd
CVE-2023-31346P4MEDIUMCVSS 6.0vvarious 2024-02-13
CVE-2023-31346 [MEDIUM] CWE-284 CVE-2023-31346: Failure to initialize memory in SEV Firmware may allow a privileged attacker to access stale data fr Failure to initialize memory in SEV Firmware may allow a privileged attacker to access stale data from other guests.
nvd
CVE-2022-23830P4MEDIUMCVSS 5.3vvarious2023-11-14
CVE-2022-23830 [MEDIUM] CVE-2022-23830: SMM configuration may not be immutable, as intended, when SNP is enabled resulting in a potential li SMM configuration may not be immutable, as intended, when SNP is enabled resulting in a potential limited loss of guest memory integrity.
nvd
CVE-2021-26354P4MEDIUMCVSS 5.5vvarious 2023-05-09
CVE-2021-26354 [MEDIUM] CWE-120 CVE-2021-26354: Insufficient bounds checking in ASP may allow an attacker to issue a system call from a compromised Insufficient bounds checking in ASP may allow an attacker to issue a system call from a compromised ABL which may cause arbitrary memory values to be initialized to zero, potentially leading to a loss of integrity.
nvd
CVE-2023-31347P4MEDIUMCVSS 4.9vvarious 2024-02-13
CVE-2023-31347 [MEDIUM] CWE-682 CVE-2023-31347: Due to a code bug in Secure_TSC, SEV firmware may allow an attacker with high privileges to cause a Due to a code bug in Secure_TSC, SEV firmware may allow an attacker with high privileges to cause a guest to observe an incorrect TSC when Secure TSC is enabled potentially resulting in a loss of guest integrity.
nvd
CVE-2021-26371P4MEDIUMCVSS 5.5vvarious 2023-05-09
CVE-2021-26371 [MEDIUM] CVE-2021-26371: A compromised or malicious ABL or UApp could send a SHA256 system call to the bootloader, which may A compromised or malicious ABL or UApp could send a SHA256 system call to the bootloader, which may result in exposure of ASP memory to userspace, potentially leading to information disclosure.
nvd
CVE-2023-31355P4MEDIUMCVSS 6.0≥ various, < MilanPI 1.0.0.D2024-08-05
CVE-2023-31355 [MEDIUM] CWE-119 CVE-2023-31355: Improper restriction of write operations in SNP firmware could allow a malicious hypervisor to overw Improper restriction of write operations in SNP firmware could allow a malicious hypervisor to overwrite a guest's UMC seed potentially allowing reading of memory from a decommissioned guest.
nvd
Amd 3Rd Gen Amd Epyc Processors vulnerabilities | cvebase