← Back

CVE-2025-62864

nvd nist
Published: Dec 16, 2025Modified: Jan 13, 2026

JSON object

Loading...
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0 (Secondary)

Description

Ampere AmpereOne AC03 devices before 3.5.9.3, AmpereOne AC04 devices before 4.4.5.2, and AmpereOne M devices before 5.4.5.1 allow an incorrectly formed SMC call to UEFI-MM MMCommunicate service that could result in an out-of-bounds write within the UEFI-MM Secure Partition context.

Affected (14)

13 products
Ampereone A192 32m Firmware
Ampereone A192 26m Firmware
Ampereone A160 28m Firmware
Ampereone A144 33m Firmware
Ampereone A144 26m Firmware
Ampereone A96 36m Firmware
Ampereone A96 36x Firmware
Ampereone A128 34x Firmware
Ampereone A144 24x Firmware
Ampereone A144 27x Firmware
Ampereone A160 28x Firmware
Ampereone A192 26x Firmware
Ampereone A192 32x Firmware
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 5.4.5.1
Running on/withPlatform Versions
Amperecomputing
Ampereone A192 32m
All versions
Configuration B
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 5.4.5.1
Running on/withPlatform Versions
Amperecomputing
Ampereone A192 26m
All versions
Configuration C
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 5.4.5.1
Running on/withPlatform Versions
Amperecomputing
Ampereone A160 28m
All versions
Configuration D
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 5.4.5.1
Running on/withPlatform Versions
Amperecomputing
Ampereone A144 33m
All versions
Configuration E
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 5.4.5.1
Running on/withPlatform Versions
Amperecomputing
Ampereone A144 26m
All versions
Configuration F
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 5.4.5.1
Running on/withPlatform Versions
Amperecomputing
Ampereone A96 36m
All versions
Configuration G
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 4.4.5.2
Running on/withPlatform Versions
Amperecomputing
Ampereone A96 36x
All versions
Configuration H
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 4.4.5.2
Running on/withPlatform Versions
Amperecomputing
Ampereone A128 34x
All versions
Configuration I
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 4.4.5.2
Running on/withPlatform Versions
Amperecomputing
Ampereone A144 24x
All versions
Configuration J
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 4.4.5.2
Running on/withPlatform Versions
Amperecomputing
Ampereone A144 27x
All versions
Configuration K
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 4.4.5.2
Running on/withPlatform Versions
Amperecomputing
Ampereone A160 28x
All versions
Configuration L
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 4.4.5.2
Configuration M
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 3.5.9.3
Running on/withPlatform Versions
Amperecomputing
Ampereone A192 26x
All versions
Configuration N
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 3.5.9.3
Running on/withPlatform Versions
Amperecomputing
Ampereone A192 32x
All versions

References (2)

Timeline

No history available yet.