Amd

Ryzen Threadripper 3970x Firmware

39 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.06%
  • Published 09.05.2023 19:15:10
  • Last modified 28.01.2025 16:15:29

A compromised or malicious ABL or UApp could send a SHA256 system call to the bootloader, which may result in exposure of ASP memory to userspace, potentially leading to information disclosure.

  • EPSS 0.26%
  • Published 02.04.2023 21:15:08
  • Last modified 25.02.2025 17:15:11

Insufficient control flow management in AmdCpmGpioInitSmm may allow a privileged attacker to tamper with the SMM handler potentially leading to escalation of privileges.

  • EPSS 0.26%
  • Published 02.04.2023 21:15:08
  • Last modified 20.02.2025 20:15:44

Insufficient control flow management in AmdCpmOemSmm may allow a privileged attacker to tamper with the SMM handler potentially leading to an escalation of privileges.

  • EPSS 0.15%
  • Published 01.03.2023 08:15:10
  • Last modified 21.11.2024 06:56:08

When SMT is enabled, certain AMD processors may speculatively execute instructions using a target from the sibling thread after an SMT mode switch potentially resulting in information disclosure.

  • EPSS 0.03%
  • Published 09.11.2022 21:15:13
  • Last modified 21.11.2024 06:49:19

IBPB may not prevent return branch predictions from being specified by pre-IBPB branch targets leading to a potential information disclosure.

  • EPSS 0.13%
  • Published 09.11.2022 21:15:12
  • Last modified 21.11.2024 05:56:16

Insufficient verification of missing size check in 'LoadModule' may lead to an out-of-bounds write potentially allowing an attacker with privileges to gain code execution of the OS/kernel by loading a malicious TA.

  • EPSS 0.1%
  • Published 09.11.2022 21:15:11
  • Last modified 21.11.2024 05:00:33

Improper parameters handling in the AMD Secure Processor (ASP) kernel may allow a privileged attacker to elevate their privileges potentially leading to loss of integrity.

  • EPSS 0.1%
  • Published 09.11.2022 21:15:10
  • Last modified 21.11.2024 05:00:33

Improper parameters handling in AMD Secure Processor (ASP) drivers may allow a privileged attacker to elevate their privileges potentially leading to loss of integrity.

  • EPSS 0.13%
  • Published 10.08.2022 20:15:24
  • Last modified 21.11.2024 06:34:42

Execution unit scheduler contention may lead to a side channel vulnerability found on AMD CPU microarchitectures codenamed “Zen 1”, “Zen 2” and “Zen 3” that use simultaneous multithreading (SMT). By measuring the contention level on scheduler queues ...

  • EPSS 0.19%
  • Published 14.07.2022 20:15:08
  • Last modified 21.11.2024 06:49:19

Aliases in the branch predictor may cause some AMD processors to predict the wrong branch type potentially leading to information disclosure.