Amd

Epyc 7282 Firmware

72 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.06%
  • Published 16.11.2021 19:15:07
  • Last modified 21.11.2024 05:00:35

A potential vulnerability exists in AMD Platform Security Processor (PSP) that may allow an attacker to zero any privileged register on the System Management Network which may lead to bypassing SPI ROM protections.

  • EPSS 0.13%
  • Published 16.11.2021 19:15:07
  • Last modified 21.11.2024 05:00:34

Insufficient validation of BIOS image length by ASP Firmware could lead to arbitrary code execution.

  • EPSS 0.13%
  • Published 16.11.2021 19:15:07
  • Last modified 21.11.2024 05:00:34

Insufficient input validation in ASP firmware for discrete TPM commands could allow a potential loss of integrity and denial of service.

  • EPSS 0.11%
  • Published 16.11.2021 19:15:07
  • Last modified 21.11.2024 05:00:34

Race condition in ASP firmware could allow less privileged x86 code to perform ASP SMM (System Management Mode) operations.

  • EPSS 0.06%
  • Published 16.11.2021 19:15:07
  • Last modified 21.11.2024 05:00:34

A side effect of an integrated chipset option may be able to be used by an attacker to bypass SPI ROM protections, allowing unauthorized SPI ROM modification.

  • EPSS 0.04%
  • Published 16.11.2021 19:15:07
  • Last modified 21.11.2024 05:56:05

Insufficient validation of the AMD SEV Signing Key (ASK) in the SEND_START command in the SEV Firmware may allow a local authenticated attacker to perform a denial of service of the PSP

  • EPSS 0.15%
  • Published 16.11.2021 19:15:07
  • Last modified 21.11.2024 05:56:05

Insufficient ID command validation in the SEV Firmware may allow a local authenticated attacker to perform a denial of service of the PSP.

  • EPSS 0.31%
  • Published 16.11.2021 18:15:07
  • Last modified 21.11.2024 05:56:08

Improper access controls in System Management Unit (SMU) may allow for an attacker to override performance control tables located in DRAM resulting in a potential lack of system resources.

  • EPSS 0.05%
  • Published 16.11.2021 18:15:07
  • Last modified 21.11.2024 05:56:06

AMD System Management Unit (SMU) may experience an integer overflow when an invalid length is provided which may result in a potential loss of resources.

  • EPSS 0.4%
  • Published 16.11.2021 18:15:07
  • Last modified 21.11.2024 05:56:05

Persistent platform private key may not be protected with a random IV leading to a potential “two time pad attack”.