← Back

Epyc 7h12 Firmware

epyc_7h12_firmware

Vendor: Amd • 54 CVEs

CVEs (54)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Amd
49Epyc 7002 Firmware
Epyc 7232p FirmwareEpyc 7252 Firmware+46 more
Jun 17, 2026
May 10, 2022
N/A· v4
7.1 HIGH· v3
6.6 MEDIUM· v2
Improper validation of destination address in SVC_LOAD_FW_IMAGE_BY_INSTANCE and SVC_LOAD_BINARY_BY_ATTRIB in a malicious UApp or ABL may allow an attacker to overwrite arbitrary bootloader memory with SPI ROM contents re...Show more
Improper validation of destination address in SVC_LOAD_FW_IMAGE_BY_INSTANCE and SVC_LOAD_BINARY_BY_ATTRIB in a malicious UApp or ABL may allow an attacker to overwrite arbitrary bootloader memory with SPI ROM contents resulting in a loss of integrity and availability.Show less
1Amd
126A10 9600p Firmware
A10 9630p FirmwareA12 9700p Firmware+123 more
Jun 17, 2026
Mar 11, 2022
N/A· v4
5.6 MEDIUM· v3
1.9 LOW· v2
LFENCE/JMP (mitigation V2-2) may not sufficiently mitigate CVE-2017-5715 on some AMD CPUs.
1Amd
126A10 9600p Firmware
A10 9630p FirmwareA12 9700p Firmware+123 more
Jun 17, 2026
Mar 11, 2022
N/A· v4
6.5 MEDIUM· v3
2.1 LOW· v2
Some AMD CPUs may transiently execute beyond unconditional direct branches, which may potentially result in data leakage.
1Amd
107Epyc 7001 Firmware
Epyc 7002 FirmwareEpyc 7003 Firmware+104 more
Jun 17, 2026
Feb 4, 2022
N/A· v4
5.5 MEDIUM· v3
2.1 LOW· v2
AMD EPYC™ Processors contain an information disclosure vulnerability in the Secure Encrypted Virtualization with Encrypted State (SEV-ES) and Secure Encrypted Virtualization with Secure Nested Paging (SEV-SNP). A local a...Show more
AMD EPYC™ Processors contain an information disclosure vulnerability in the Secure Encrypted Virtualization with Encrypted State (SEV-ES) and Secure Encrypted Virtualization with Secure Nested Paging (SEV-SNP). A local authenticated attacker could potentially exploit this vulnerability leading to leaking guest data by the malicious hypervisor.Show less
1Amd
105Epyc 7001 Firmware
Epyc 7232p FirmwareEpyc 7251 Firmware+102 more
Jun 17, 2026
Dec 10, 2021
N/A· v4
8.4 HIGH· v3
3.6 LOW· v2
A malicious hypervisor in conjunction with an unprivileged attacker process inside an SEV/SEV-ES guest VM may fail to flush the Translation Lookaside Buffer (TLB) resulting in unexpected behavior inside the virtual machi...Show more
A malicious hypervisor in conjunction with an unprivileged attacker process inside an SEV/SEV-ES guest VM may fail to flush the Translation Lookaside Buffer (TLB) resulting in unexpected behavior inside the virtual machine (VM).Show less
1Amd
57Epyc 7232p Firmware
Epyc 7251 FirmwareEpyc 7252 Firmware+54 more
Jun 17, 2026
Nov 16, 2021
N/A· v4
5.5 MEDIUM· v3
4.9 MEDIUM· v2
Insufficient ID command validation in the SEV Firmware may allow a local authenticated attacker to perform a denial of service of the PSP.
1Amd
57Epyc 7232p Firmware
Epyc 7251 FirmwareEpyc 7252 Firmware+54 more
Jun 17, 2026
Nov 16, 2021
N/A· v4
5.5 MEDIUM· v3
2.1 LOW· v2
Insufficient validation of the AMD SEV Signing Key (ASK) in the SEND_START command in the SEV Firmware may allow a local authenticated attacker to perform a denial of service of the PSP
1Amd
44Epyc 7232p Firmware
Epyc 7252 FirmwareEpyc 7262 Firmware+41 more
Jun 17, 2026
Nov 16, 2021
N/A· v4
7.1 HIGH· v3
6.6 MEDIUM· v2
Insufficient input validation in ASP firmware for discrete TPM commands could allow a potential loss of integrity and denial of service.
1Amd
57Epyc 7232p Firmware
Epyc 7251 FirmwareEpyc 7252 Firmware+54 more
Jun 17, 2026
Nov 16, 2021
N/A· v4
7.8 HIGH· v3
4.6 MEDIUM· v2
Insufficient validation of BIOS image length by ASP Firmware could lead to arbitrary code execution.
1Amd
44Epyc 7232p Firmware
Epyc 7252 FirmwareEpyc 7262 Firmware+41 more
Jun 17, 2026
Nov 16, 2021
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
Improper access controls in System Management Unit (SMU) may allow for an attacker to override performance control tables located in DRAM resulting in a potential lack of system resources.
1Amd
57Epyc 7232p Firmware
Epyc 7251 FirmwareEpyc 7252 Firmware+54 more
Jun 17, 2026
Nov 16, 2021
N/A· v4
5.5 MEDIUM· v3
2.1 LOW· v2
AMD System Management Unit (SMU) may experience an integer overflow when an invalid length is provided which may result in a potential loss of resources.
1Amd
57Epyc 7232p Firmware
Epyc 7251 FirmwareEpyc 7252 Firmware+54 more
Jun 17, 2026
Nov 16, 2021
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
Persistent platform private key may not be protected with a random IV leading to a potential “two time pad attack”.
1Amd
57Epyc 7232p Firmware
Epyc 7251 FirmwareEpyc 7252 Firmware+54 more
Jun 17, 2026
Nov 16, 2021
N/A· v4
5.5 MEDIUM· v3
2.1 LOW· v2
Failure to flush the Translation Lookaside Buffer (TLB) of the I/O memory management unit (IOMMU) may lead an IO device to write to memory it should not be able to access, resulting in a potential loss of integrity.
1Amd
61Epyc 7001 Firmware
Epyc 7002 FirmwareEpyc 7003 Firmware+58 more
Jun 17, 2026
Jun 11, 2021
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
A potential denial of service (DoS) vulnerability exists in the integrated chipset that may allow a malicious attacker to hang the system when it is rebooted.