Amd Epyc Embedded 7002 Series Processors vulnerabilities
6 known vulnerabilities affecting amd/amd_epyc_embedded_7002_series_processors.
Total CVEs
6
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM2LOW3
Vulnerabilities
Page 1 of 1
CVE-2025-52533HIGHCVSS 8.7vNo fix planned2026-02-12
CVE-2025-52533 [HIGH] CWE-1191 CVE-2025-52533: Improper Access Control in an on-chip debug interface could allow a privileged attacker to enable a
Improper Access Control in an on-chip debug interface could allow a privileged attacker to enable a debug interface and potentially compromise data confidentiality or integrity.
cvelistv5nvd
CVE-2024-36349LOWCVSS 3.8vall2025-07-08
CVE-2024-36349 [LOW] CWE-1420 CVE-2024-36349: A transient execution vulnerability in some AMD processors may allow a user process to infer TSC_AUX
A transient execution vulnerability in some AMD processors may allow a user process to infer TSC_AUX even when such a read is disabled, potentially resulting in information leakage.
cvelistv5nvd
CVE-2024-36348LOWCVSS 3.8vall2025-07-08
CVE-2024-36348 [LOW] CWE-1420 CVE-2024-36348: A transient execution vulnerability in some AMD processors may allow a user process to infer the con
A transient execution vulnerability in some AMD processors may allow a user process to infer the control registers speculatively even if UMIP feature is enabled, potentially resulting in information leakage.
cvelistv5nvd
CVE-2021-46746MEDIUMCVSS 5.2vvarious2024-08-13
CVE-2021-46746 [MEDIUM] CWE-120 CVE-2021-46746: Lack of stack protection exploit mechanisms in ASP Secure OS Trusted Execution Environment (TEE) may
Lack of stack protection exploit mechanisms in ASP Secure OS Trusted Execution Environment (TEE) may allow a privileged attacker with access to AMD signing
keys to c006Frrupt the return address, causing a
stack-based buffer overrun, potentially leading to a denial of service.
cvelistv5nvd
CVE-2024-21981MEDIUMCVSS 5.7vvarious2024-08-13
CVE-2024-21981 [MEDIUM] CWE-639 CVE-2024-21981: Improper key usage control in AMD Secure Processor
(ASP) may allow an attacker with local access who
Improper key usage control in AMD Secure Processor
(ASP) may allow an attacker with local access who has gained arbitrary code
execution privilege in ASP to
extract ASP cryptographic keys, potentially resulting in loss of
confidentiality and integrity.
cvelistv5nvd
CVE-2021-26387LOWCVSS 3.9vvarious2024-08-13
CVE-2021-26387 [LOW] CWE-863 CVE-2021-26387: Insufficient access controls in ASP kernel may allow a
privileged attacker with access to AMD signin
Insufficient access controls in ASP kernel may allow a
privileged attacker with access to AMD signing keys and the BIOS menu or UEFI
shell to map DRAM regions in protected areas, potentially leading to a loss of platform integrity.
cvelistv5nvd