Amd

Epyc 7473x Firmware

55 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.12%
  • Veröffentlicht 09.05.2023 20:15:12
  • Zuletzt bearbeitet 28.01.2025 16:15:31

Insufficient validation of inputs in SVC_MAP_USER_STACK in the ASP (AMD Secure Processor) bootloader may allow an attacker with a malicious Uapp or ABL to send malformed or invalid syscall to the bootloader resulting in a potential denial of service ...

  • EPSS 0.09%
  • Veröffentlicht 09.05.2023 19:15:11
  • Zuletzt bearbeitet 28.01.2025 16:15:32

Insufficient input validation in the SMU may enable a privileged attacker to write beyond the intended bounds of a shared memory buffer potentially leading to a loss of integrity.

  • EPSS 0.15%
  • Veröffentlicht 09.05.2023 19:15:11
  • Zuletzt bearbeitet 28.01.2025 16:15:35

An attacker with a compromised ASP could possibly send malformed commands to an ASP on another CPU, resulting in an out of bounds write, potentially leading to a loss a loss of integrity.

  • EPSS 0.31%
  • Veröffentlicht 09.05.2023 19:15:11
  • Zuletzt bearbeitet 28.01.2025 16:15:34

Improper access control settings in ASP Bootloader may allow an attacker to corrupt the return address causing a stack-based buffer overrun potentially leading to arbitrary code execution.

  • EPSS 0.09%
  • Veröffentlicht 09.05.2023 19:15:11
  • Zuletzt bearbeitet 28.01.2025 16:15:33

Insufficient input validation on the model specific register: VM_HSAVE_PA may potentially lead to loss of SEV-SNP guest memory integrity.

  • EPSS 0.06%
  • Veröffentlicht 09.05.2023 19:15:11
  • Zuletzt bearbeitet 28.01.2025 16:15:32

Improper input validation in ABL may enable an attacker with physical access, to perform arbitrary memory overwrites, potentially leading to a loss of integrity and code execution.

  • EPSS 0.16%
  • Veröffentlicht 09.05.2023 19:15:11
  • Zuletzt bearbeitet 28.01.2025 16:15:32

Insufficient syscall input validation in the ASP Bootloader may allow a privileged attacker to execute arbitrary DMA copies, which can lead to code execution.

  • EPSS 0.12%
  • Veröffentlicht 09.05.2023 19:15:11
  • Zuletzt bearbeitet 28.01.2025 16:15:32

Improper validation of DRAM addresses in SMU may allow an attacker to overwrite sensitive memory locations within the ASP potentially resulting in a denial of service.

  • EPSS 0.03%
  • Veröffentlicht 09.05.2023 19:15:11
  • Zuletzt bearbeitet 21.11.2024 06:34:39

Insufficient input validation in the SMU may allow an attacker to corrupt SMU SRAM potentially leading to a loss of integrity or denial of service.

  • EPSS 0.03%
  • Veröffentlicht 09.05.2023 19:15:10
  • Zuletzt bearbeitet 28.01.2025 16:15:30

Insufficient address validation, may allow an attacker with a compromised ABL and UApp to corrupt sensitive memory locations potentially resulting in a loss of integrity or availability.