AMD
AMD Ryzen Threadripper 3960x Firmware: vulnerabilidades y CVE
AMD Ryzen Threadripper 3960x Firmware tiene 35 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 2 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE35
Últimos 12 meses0
Críticas2
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2023-20533 | Alta (7.5) | 0.50% | — | 14 nov 2023 | Insufficient DRAM address validation in System Management Unit (SMU) may allow an attacker to read/write from/to an invalid DRAM address, potentially resulting in denial-of-service. |
| CVE-2022-23821 | Crítica (9.8) | 0.99% | — | 14 nov 2023 | Improper access control in System Management Mode (SMM) may allow an attacker to write to SPI ROM potentially leading to arbitrary code execution. |
| CVE-2022-23820 | Crítica (9.8) | 0.70% | — | 14 nov 2023 | Failure to validate the AMD SMM communication buffer may allow an attacker to corrupt the SMRAM potentially leading to arbitrary code execution. |
| CVE-2021-46774 | Alta (7.5) | 0.51% | — | 14 nov 2023 | Insufficient DRAM address validation in System Management Unit (SMU) may allow an attacker to read/write from/to an invalid DRAM address, potentially resulting in denial-of-service. |
| CVE-2023-20597 | Media (5.5) | 0.18% | — | 20 sept 2023 | Improper initialization of variables in the DXE driver may allow a privileged user to leak sensitive information via local access. |
| CVE-2023-20594 | Media (4.4) | 0.19% | — | 20 sept 2023 | Improper initialization of variables in the DXE driver may allow a privileged user to leak sensitive information via local access. |
| CVE-2023-20589 | Media (6.8) | 0.58% | — | 8 ago 2023 | An attacker with specialized hardware and physical access to an impacted device may be able to perform a voltage fault injection attack resulting in compromise of the ASP secure boot potentially leading to arbitrary… |
| CVE-2023-20593 | Media (5.5) | 5.2% | — | 24 jul 2023 | An issue in “Zen 2” CPUs, under specific microarchitectural circumstances, may allow an attacker to potentially access sensitive information. |
| CVE-2021-26371 | Media (5.5) | 0.19% | — | 9 may 2023 | A compromised or malicious ABL or UApp could send a SHA256 system call to the bootloader, which may result in exposure of ASP memory to userspace, potentially leading to information disclosure. |
| CVE-2021-26356 | Alta (7.4) | 0.40% | — | 9 may 2023 | A TOCTOU in ASP bootloader may allow an attacker to tamper with the SPI ROM following data read to memory potentially resulting in S3 data corruption and information disclosure. |
| CVE-2021-26354 | Media (5.5) | 0.18% | — | 9 may 2023 | Insufficient bounds checking in ASP may allow an attacker to issue a system call from a compromised ABL which may cause arbitrary memory values to be initialized to zero, potentially leading to a loss of integrity. |
| CVE-2023-20559 | Alta (8.8) | 0.67% | — | 2 abr 2023 | Insufficient control flow management in AmdCpmGpioInitSmm may allow a privileged attacker to tamper with the SMM handler potentially leading to escalation of privileges. |
| CVE-2023-20558 | Alta (8.8) | 0.67% | — | 2 abr 2023 | Insufficient control flow management in AmdCpmOemSmm may allow a privileged attacker to tamper with the SMM handler potentially leading to an escalation of privileges. |
| CVE-2022-27672 | Media (4.7) | 0.28% | — | 1 mar 2023 | When SMT is enabled, certain AMD processors may speculatively execute instructions using a target from the sibling thread after an SMT mode switch potentially resulting in information disclosure. |
| CVE-2022-23824 | Media (5.5) | 0.59% | — | 9 nov 2022 | IBPB may not prevent return branch predictions from being specified by pre-IBPB branch targets leading to a potential information disclosure. |
| CVE-2021-26392 | Alta (7.8) | 0.27% | — | 9 nov 2022 | Insufficient verification of missing size check in 'LoadModule' may lead to an out-of-bounds write potentially allowing an attacker with privileges to gain code execution of the OS/kernel by loading a malicious TA. |
| CVE-2020-12931 | Alta (7.8) | 0.26% | — | 9 nov 2022 | Improper parameters handling in the AMD Secure Processor (ASP) kernel may allow a privileged attacker to elevate their privileges potentially leading to loss of integrity. |
| CVE-2020-12930 | Alta (7.8) | 0.26% | — | 9 nov 2022 | Improper parameters handling in AMD Secure Processor (ASP) drivers may allow a privileged attacker to elevate their privileges potentially leading to loss of integrity. |
| CVE-2021-46778 | Media (5.6) | 0.23% | — | 10 ago 2022 | Execution unit scheduler contention may lead to a side channel vulnerability found on AMD CPU microarchitectures codenamed “Zen 1”, “Zen 2” and “Zen 3” that use simultaneous multithreading (SMT). By measuring the… |
| CVE-2022-23825 | Media (6.5) | 0.78% | — | 14 jul 2022 | Aliases in the branch predictor may cause some AMD processors to predict the wrong branch type potentially leading to information disclosure. |
| CVE-2022-29900 | Media (6.5) | 3.9% | — | 12 jul 2022 | Mis-trained branch predictions for return instructions may allow arbitrary speculative code execution under certain microarchitecture-dependent conditions. |
| CVE-2022-23823 | Media (6.5) | 1.2% | — | 15 jun 2022 | A potential vulnerability in some AMD processors using frequency scaling may allow an authenticated attacker to execute a timing attack to potentially enable information disclosure. |
| CVE-2021-26386 | Alta (7.8) | 0.28% | — | 12 may 2022 | A malicious or compromised UApp or ABL may be used by an attacker to issue a malformed system call to the Stage 2 Bootloader potentially leading to corrupt memory and code execution. |
| CVE-2021-26368 | Media (4.4) | 0.14% | — | 12 may 2022 | Insufficient check of the process type in Trusted OS (TOS) may allow an attacker with privileges to enable a lesser privileged process to unmap memory owned by a higher privileged process resulting in a denial of… |
| CVE-2021-26317 | Alta (7.8) | 0.29% | — | 12 may 2022 | Failure to verify the protocol in SMM may allow an attacker to control the protocol and modify SPI flash resulting in a potential arbitrary code execution. |
| CVE-2021-26366 | Alta (7.1) | 0.24% | — | 12 may 2022 | An attacker, who gained elevated privileges via some other vulnerability, may be able to read data from Boot ROM resulting in a loss of system integrity. |
| CVE-2021-26351 | Media (5.5) | 0.21% | — | 12 may 2022 | Insufficient DRAM address validation in System Management Unit (SMU) may result in a DMA (Direct Memory Access) read/write from/to invalid DRAM address that could result in denial of service. |
| CVE-2021-26388 | Media (5.5) | 0.22% | — | 11 may 2022 | Improper validation of the BIOS directory may allow for searches to read beyond the directory table copy in RAM, exposing out of bounds memory contents, resulting in a potential denial of service. |
| CVE-2021-26378 | Media (5.5) | 0.22% | — | 11 may 2022 | Insufficient bound checks in the System Management Unit (SMU) may result in access to an invalid address space that could result in denial of service. |
| CVE-2021-26376 | Media (5.5) | 0.22% | — | 11 may 2022 | Insufficient checks in System Management Unit (SMU) FeatureConfig may result in reenabling features potentially resulting in denial of resources and/or denial of service. |