Amd Epyc Embedded 3000 Series Processors vulnerabilities
6 known vulnerabilities affecting amd/amd_epyc_embedded_3000_series_processors.
Total CVEs
6
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH2MEDIUM2LOW2
Vulnerabilities
Page 1 of 1
CVE-2025-52533HIGHCVSS 8.7vNo fix planned2026-02-12
CVE-2025-52533 [HIGH] CWE-1191 CVE-2025-52533: Improper Access Control in an on-chip debug interface could allow a privileged attacker to enable a
Improper Access Control in an on-chip debug interface could allow a privileged attacker to enable a debug interface and potentially compromise data confidentiality or integrity.
cvelistv5nvd
CVE-2024-36349LOWCVSS 3.8vall2025-07-08
CVE-2024-36349 [LOW] CWE-1420 CVE-2024-36349: A transient execution vulnerability in some AMD processors may allow a user process to infer TSC_AUX
A transient execution vulnerability in some AMD processors may allow a user process to infer TSC_AUX even when such a read is disabled, potentially resulting in information leakage.
cvelistv5nvd
CVE-2021-26344HIGHCVSS 8.2vVarious2024-08-13
CVE-2021-26344 [HIGH] CWE-787 CVE-2021-26344: An out of bounds memory write when processing the AMD
PSP1 Configuration Block (APCB) could allow an
An out of bounds memory write when processing the AMD
PSP1 Configuration Block (APCB) could allow an attacker with access the ability
to modify the BIOS image, and the ability to sign the resulting image, to
potentially modify the APCB block resulting in arbitrary code execution.
cvelistv5nvd
CVE-2021-46746MEDIUMCVSS 5.2vvarious2024-08-13
CVE-2021-46746 [MEDIUM] CWE-120 CVE-2021-46746: Lack of stack protection exploit mechanisms in ASP Secure OS Trusted Execution Environment (TEE) may
Lack of stack protection exploit mechanisms in ASP Secure OS Trusted Execution Environment (TEE) may allow a privileged attacker with access to AMD signing
keys to c006Frrupt the return address, causing a
stack-based buffer overrun, potentially leading to a denial of service.
cvelistv5nvd
CVE-2024-21981MEDIUMCVSS 5.7vvarious2024-08-13
CVE-2024-21981 [MEDIUM] CWE-639 CVE-2024-21981: Improper key usage control in AMD Secure Processor
(ASP) may allow an attacker with local access who
Improper key usage control in AMD Secure Processor
(ASP) may allow an attacker with local access who has gained arbitrary code
execution privilege in ASP to
extract ASP cryptographic keys, potentially resulting in loss of
confidentiality and integrity.
cvelistv5nvd
CVE-2021-26387LOWCVSS 3.9vvarious2024-08-13
CVE-2021-26387 [LOW] CWE-863 CVE-2021-26387: Insufficient access controls in ASP kernel may allow a
privileged attacker with access to AMD signin
Insufficient access controls in ASP kernel may allow a
privileged attacker with access to AMD signing keys and the BIOS menu or UEFI
shell to map DRAM regions in protected areas, potentially leading to a loss of platform integrity.
cvelistv5nvd