Amd

Ryzen 9 4900h Firmware

12 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.01%
  • Published 13.02.2024 20:15:52
  • Last modified 14.03.2025 18:15:25

Improper Access Control in the AMD SPI protection feature may allow a user with Ring0 (kernel mode) privileged access to bypass protections potentially resulting in loss of integrity and availability.

Exploit
  • EPSS 0.91%
  • Published 16.01.2024 17:15:08
  • Last modified 20.06.2025 18:15:22

A GPU kernel can read sensitive data from another GPU kernel (even from another user or app) through an optimized GPU memory region called _local memory_ on various architectures.

  • EPSS 0.13%
  • Published 14.11.2023 19:15:10
  • Last modified 21.11.2024 06:34:39

Insufficient validation of SPI flash addresses in the ASP (AMD Secure Processor) bootloader may allow an attacker to read data in memory mapped beyond SPI flash resulting in a potential loss of availability and integrity.

  • EPSS 0.18%
  • Published 14.11.2023 19:15:10
  • Last modified 21.11.2024 06:49:18

Failure to validate the AMD SMM communication buffer may allow an attacker to corrupt the SMRAM potentially leading to arbitrary code execution.

  • EPSS 0.34%
  • Published 14.11.2023 19:15:10
  • Last modified 21.11.2024 06:49:18

Improper access control in System Management Mode (SMM) may allow an attacker to write to SPI ROM potentially leading to arbitrary code execution.

  • EPSS 0.05%
  • Published 08.08.2023 18:15:11
  • Last modified 21.11.2024 07:41:06

Insufficient input validation in CpmDisplayFeatureSmm may allow an attacker to corrupt SMM memory by overwriting an arbitrary bit in an attacker-controlled pointer potentially leading to arbitrary code execution in SMM.

  • EPSS 0.15%
  • Published 01.03.2023 08:15:10
  • Last modified 21.11.2024 06:56:08

When SMT is enabled, certain AMD processors may speculatively execute instructions using a target from the sibling thread after an SMT mode switch potentially resulting in information disclosure.

  • EPSS 0.03%
  • Published 09.11.2022 21:15:13
  • Last modified 21.11.2024 06:49:19

IBPB may not prevent return branch predictions from being specified by pre-IBPB branch targets leading to a potential information disclosure.

  • EPSS 0.13%
  • Published 10.08.2022 20:15:24
  • Last modified 21.11.2024 06:34:42

Execution unit scheduler contention may lead to a side channel vulnerability found on AMD CPU microarchitectures codenamed “Zen 1”, “Zen 2” and “Zen 3” that use simultaneous multithreading (SMT). By measuring the contention level on scheduler queues ...

  • EPSS 0.19%
  • Published 14.07.2022 20:15:08
  • Last modified 21.11.2024 06:49:19

Aliases in the branch predictor may cause some AMD processors to predict the wrong branch type potentially leading to information disclosure.