5.5

CVE-2023-20593

Exploit

An issue in “Zen 2” CPUs, under specific microarchitectural circumstances, may allow an attacker to potentially access sensitive information.

Data is provided by the National Vulnerability Database (NVD)
XenXen Version4.14.0 HwPlatformx86
XenXen Version4.15.0 HwPlatformx86
XenXen Version4.16.0 HwPlatformx86
XenXen Version4.17.0 HwPlatformx86
DebianDebian Linux Version10.0
DebianDebian Linux Version11.0
DebianDebian Linux Version12.0
AmdRyzen 3 3100 Firmware Version-
   AmdRyzen 3 3100 Version-
AmdRyzen 3 3300x Firmware Version-
   AmdRyzen 3 3300x Version-
AmdRyzen 5 3500 Firmware Version-
   AmdRyzen 5 3500 Version-
AmdRyzen 5 3500x Firmware Version-
   AmdRyzen 5 3500x Version-
AmdRyzen 5 3600 Firmware Version-
   AmdRyzen 5 3600 Version-
AmdRyzen 5 3600x Firmware Version-
   AmdRyzen 5 3600x Version-
AmdRyzen 5 3600xt Firmware Version-
   AmdRyzen 5 3600xt Version-
AmdRyzen 7 3700x Firmware Version-
   AmdRyzen 7 3700x Version-
AmdRyzen 7 3800x Firmware Version-
   AmdRyzen 7 3800x Version-
AmdRyzen 7 3800xt Firmware Version-
   AmdRyzen 7 3800xt Version-
AmdRyzen 9 3900 Firmware Version-
   AmdRyzen 9 3900 Version-
AmdRyzen 9 3900x Firmware Version-
   AmdRyzen 9 3900x Version-
AmdRyzen 9 3900xt Firmware Version-
   AmdRyzen 9 3900xt Version-
AmdRyzen 9 3950x Firmware Version-
   AmdRyzen 9 3950x Version-
AmdRyzen 9 Pro 3900 Firmware Version-
   AmdRyzen 9 Pro 3900 Version-
AmdRyzen 7 4700g Firmware Version-
   AmdRyzen 7 4700g Version-
AmdRyzen 7 4700ge Firmware Version-
   AmdRyzen 7 4700ge Version-
AmdRyzen 5 4600g Firmware Version-
   AmdRyzen 5 4600g Version-
AmdRyzen 5 4600ge Firmware Version-
   AmdRyzen 5 4600ge Version-
AmdRyzen 3 4300g Firmware Version-
   AmdRyzen 3 4300g Version-
AmdRyzen 3 4300ge Firmware Version-
   AmdRyzen 3 4300ge Version-
AmdRyzen 3 Pro 4450u Firmware Version-
   AmdRyzen 3 Pro 4450u Version-
AmdRyzen 3 Pro 4350ge Firmware Version-
   AmdRyzen 3 Pro 4350ge Version-
AmdRyzen 3 Pro 4350g Firmware Version-
   AmdRyzen 3 Pro 4350g Version-
AmdRyzen 3 Pro 4200g Firmware Version-
   AmdRyzen 3 Pro 4200g Version-
AmdRyzen 5 Pro 4650ge Firmware Version-
   AmdRyzen 5 Pro 4650ge Version-
AmdRyzen 5 Pro 4650g Firmware Version-
   AmdRyzen 5 Pro 4650g Version-
AmdRyzen 5 Pro 4400g Firmware Version-
   AmdRyzen 5 Pro 4400g Version-
AmdRyzen 7 Pro 4750u Firmware Version-
   AmdRyzen 7 Pro 4750u Version-
AmdRyzen 7 Pro 4750ge Firmware Version-
   AmdRyzen 7 Pro 4750ge Version-
AmdRyzen 7 Pro 4750g Firmware Version-
   AmdRyzen 7 Pro 4750g Version-
AmdRyzen 7 5700u Firmware Version-
   AmdRyzen 7 5700u Version-
AmdRyzen 5 5500u Firmware Version-
   AmdRyzen 5 5500u Version-
AmdRyzen 3 5300u Firmware Version-
   AmdRyzen 3 5300u Version-
AmdRyzen 5 7520u Firmware Version-
   AmdRyzen 5 7520u Version-
AmdRyzen 3 7320u Firmware Version-
   AmdRyzen 3 7320u Version-
AmdAthlon Gold 7220u Firmware Version-
   AmdAthlon Gold 7220u Version-
AmdEpyc 7232p Firmware Version-
   AmdEpyc 7232p Version-
AmdEpyc 7302p Firmware Version-
   AmdEpyc 7302p Version-
AmdEpyc 7402p Firmware Version-
   AmdEpyc 7402p Version-
AmdEpyc 7502p Firmware Version-
   AmdEpyc 7502p Version-
AmdEpyc 7702p Firmware Version-
   AmdEpyc 7702p Version-
AmdEpyc 7252 Firmware Version-
   AmdEpyc 7252 Version-
AmdEpyc 7262 Firmware Version-
   AmdEpyc 7262 Version-
AmdEpyc 7272 Firmware Version-
   AmdEpyc 7272 Version-
AmdEpyc 7282 Firmware Version-
   AmdEpyc 7282 Version-
AmdEpyc 7302 Firmware Version-
   AmdEpyc 7302 Version-
AmdEpyc 7352 Firmware Version-
   AmdEpyc 7352 Version-
AmdEpyc 7402 Firmware Version-
   AmdEpyc 7402 Version-
AmdEpyc 7452 Firmware Version-
   AmdEpyc 7452 Version-
AmdEpyc 7502 Firmware Version-
   AmdEpyc 7502 Version-
AmdEpyc 7532 Firmware Version-
   AmdEpyc 7532 Version-
AmdEpyc 7542 Firmware Version-
   AmdEpyc 7542 Version-
AmdEpyc 7552 Firmware Version-
   AmdEpyc 7552 Version-
AmdEpyc 7642 Firmware Version-
   AmdEpyc 7642 Version-
AmdEpyc 7662 Firmware Version-
   AmdEpyc 7662 Version-
AmdEpyc 7702 Firmware Version-
   AmdEpyc 7702 Version-
AmdEpyc 7742 Firmware Version-
   AmdEpyc 7742 Version-
AmdEpyc 7h12 Firmware Version-
   AmdEpyc 7h12 Version-
AmdEpyc 7f32 Firmware Version-
   AmdEpyc 7f32 Version-
AmdEpyc 7f52 Firmware Version-
   AmdEpyc 7f52 Version-
AmdEpyc 7f72 Firmware Version-
   AmdEpyc 7f72 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 6.32% 0.906
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5.5 1.8 3.6
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
CWE-209 Generation of Error Message Containing Sensitive Information

The product generates an error message that includes sensitive information about its environment, users, or associated data.

http://www.openwall.com/lists/oss-security/2023/07/26/1
Patch
Third Party Advisory
Mailing List
Mitigation
http://www.openwall.com/lists/oss-security/2023/07/31/2
Patch
Third Party Advisory
Mailing List
Mitigation
http://xenbits.xen.org/xsa/advisory-433.html
Patch
Vendor Advisory
Mitigation