7.5

CVE-2022-23818

Insufficient input validation on the model
specific register: VM_HSAVE_PA may potentially lead to loss of SEV-SNP guest
memory integrity.







 















Data is provided by the National Vulnerability Database (NVD)
AmdEpyc 72f3 Firmware Versionmilanpi_1.0.0.9
   AmdEpyc 72f3 Version-
AmdEpyc 7313 Firmware Versionmilanpi_1.0.0.9
   AmdEpyc 7313 Version-
AmdEpyc 7313p Firmware Versionmilanpi_1.0.0.9
   AmdEpyc 7313p Version-
AmdEpyc 7343 Firmware Versionmilanpi_1.0.0.9
   AmdEpyc 7343 Version-
AmdEpyc 7373x Firmware Versionmilanpi_1.0.0.9
   AmdEpyc 7373x Version-
AmdEpyc 73f3 Firmware Versionmilanpi_1.0.0.9
   AmdEpyc 73f3 Version-
AmdEpyc 7413 Firmware Versionmilanpi_1.0.0.9
   AmdEpyc 7413 Version-
AmdEpyc 7443 Firmware Versionmilanpi_1.0.0.9
   AmdEpyc 7443 Version-
AmdEpyc 7443p Firmware Versionmilanpi_1.0.0.9
   AmdEpyc 7443p Version-
AmdEpyc 7453 Firmware Versionmilanpi_1.0.0.9
   AmdEpyc 7453 Version-
AmdEpyc 7473x Firmware Versionmilanpi_1.0.0.9
   AmdEpyc 7473x Version-
AmdEpyc 74f3 Firmware Versionmilanpi_1.0.0.9
   AmdEpyc 74f3 Version-
AmdEpyc 7513 Firmware Versionmilanpi_1.0.0.9
   AmdEpyc 7513 Version-
AmdEpyc 7543 Firmware Versionmilanpi_1.0.0.9
   AmdEpyc 7543 Version-
AmdEpyc 7543p Firmware Versionmilanpi_1.0.0.9
   AmdEpyc 7543p Version-
AmdEpyc 7573x Firmware Versionmilanpi_1.0.0.9
   AmdEpyc 7573x Version-
AmdEpyc 75f3 Firmware Versionmilanpi_1.0.0.9
   AmdEpyc 75f3 Version-
AmdEpyc 7643 Firmware Versionmilanpi_1.0.0.9
   AmdEpyc 7643 Version-
AmdEpyc 7663 Firmware Versionmilanpi_1.0.0.9
   AmdEpyc 7663 Version-
AmdEpyc 7713 Firmware Versionmilanpi_1.0.0.9
   AmdEpyc 7713 Version-
AmdEpyc 7713p Firmware Versionmilanpi_1.0.0.9
   AmdEpyc 7713p Version-
AmdEpyc 7763 Firmware Versionmilanpi_1.0.0.9
   AmdEpyc 7763 Version-
AmdEpyc 7773x Firmware Versionmilanpi_1.0.0.9
   AmdEpyc 7773x Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.09% 0.235
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
134c704f-9b21-4f2e-91b3-4a467353bcc0 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
CWE-20 Improper Input Validation

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.