CVEs (7)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Amd 56Athlon Gold 3150g Firmware Athlon Gold 3150ge FirmwareAthlon Silver 3050ge Firmware+53 moreJan 28, 2025 May 9, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 Insufficient bounds checking in ASP (AMD Secure Processor) may allow for an out of bounds read in SMI (System Management Interface) mailbox checksum calculation triggering a data abort, resulting in a potential denial of...Show more |
1Amd 55Athlon Gold 3150g Firmware Athlon Gold 3150ge FirmwareAthlon Silver 3050ge Firmware+52 moreJan 28, 2025 May 9, 2023 N/A· v4 5.9 MEDIUM· v3 N/A· v2 Time-of-check Time-of-use (TOCTOU) in the BIOS2PSP command may allow an attacker with a malicious BIOS to create a race condition causing the ASP bootloader to perform out-of-bounds SRAM reads upon an S3 resume event pot...Show more |
1Amd 63Ryzen 1200 (af) Firmware Ryzen 1600 (af) FirmwareRyzen 2200g Firmware+60 moreJan 28, 2025 May 9, 2023 N/A· v4 8.8 HIGH· v3 N/A· v2 Insufficient input validation in ABL may enable
a privileged attacker to corrupt ASP memory, potentially resulting in a loss of
integrity or code execution.
|
1Amd 56Athlon Gold 3150g Firmware Athlon Gold 3150ge FirmwareAthlon Silver 3050ge Firmware+53 moreJan 27, 2025 May 9, 2023 N/A· v4 6.1 MEDIUM· v3 N/A· v2 Improper syscall input validation in AMD TEE (Trusted Execution Environment) may allow an attacker with physical access and control of a Uapp that runs under the bootloader to reveal the contents of the ASP (AMD Secure P...Show more |
1Amd 56Athlon Gold 3150g Firmware Athlon Gold 3150ge FirmwareAthlon Silver 3050ge Firmware+53 moreNov 21, 2024 May 9, 2023 N/A· v4 9.1 CRITICAL· v3 N/A· v2 Insufficient input validation in the ASP (AMD Secure Processor) bootloader may allow an attacker with a compromised Uapp or ABL to coerce the bootloader into exposing sensitive information to the SMU (System Management U...Show more |
1Amd 66Athlon Gold 3150g Firmware Athlon Gold 3150ge FirmwareAthlon Silver 3050ge Firmware+63 moreJan 28, 2025 May 9, 2023 N/A· v4 9.1 CRITICAL· v3 N/A· v2 Failure to validate the length fields of the ASP (AMD Secure Processor) sensor fusion hub headers may allow an attacker with a malicious Uapp or ABL to map the ASP sensor fusion hub region and overwrite data structures l...Show more |
1Amd 56Athlon Gold 3150g Firmware Athlon Gold 3150ge FirmwareAthlon Silver 3050ge Firmware+53 moreJan 28, 2025 May 9, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 Insufficient bounds checking in ASP (AMD Secure Processor) may allow for an out of bounds read in SMI (System Management Interface) mailbox checksum calculation triggering a data abort, resulting in a potential denial of...Show more |