CVEs (34)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Amd 103Amd 3015ce Firmware Amd 3015e FirmwareAmd 3020e Firmware+100 moreNov 21, 2024 Nov 9, 2022 N/A· v4 7.8 HIGH· v3 N/A· v2 Insufficient verification of missing size check in 'LoadModule' may lead to an out-of-bounds write potentially allowing an attacker with privileges to gain code execution of the OS/kernel by loading a malicious TA. |
1Amd 26Enterprise Driver Radeon Pro SoftwareRadeon Rx Vega 56 Firmware+23 moreMay 1, 2025 Nov 9, 2022 N/A· v4 7.8 HIGH· v3 N/A· v2 Insufficient verification of multiple header signatures while loading a Trusted Application (TA) may allow an attacker with privileges to gain code execution in that TA or the OS/kernel. |
1Amd 101Amd 3015ce Firmware Amd 3015e FirmwareAmd 3020e Firmware+98 moreNov 21, 2024 Nov 9, 2022 N/A· v4 7.8 HIGH· v3 N/A· v2 Improper parameters handling in the AMD Secure Processor (ASP) kernel may allow a privileged attacker to elevate their privileges potentially leading to loss of integrity. |
1Amd 103Amd 3015ce Firmware Amd 3015e FirmwareAmd 3020e Firmware+100 moreNov 21, 2024 Nov 9, 2022 N/A· v4 7.8 HIGH· v3 N/A· v2 Improper parameters handling in AMD Secure Processor (ASP) drivers may allow a privileged attacker to elevate their privileges potentially leading to loss of integrity. |
1Amd 179Athlon 3050ge Firmware Athlon 3150g FirmwareAthlon 3150ge Firmware+176 moreNov 21, 2024 Aug 10, 2022 N/A· v4 5.6 MEDIUM· v3 N/A· v2 Execution unit scheduler contention may lead to a side channel vulnerability found on AMD CPU microarchitectures codenamed “Zen 1”, “Zen 2” and “Zen 3” that use simultaneous multithreading (SMT). By measuring the content...Show more |
1Amd 52Athlon Gold 3150u Firmware Athlon Silver 3050u FirmwareRyzen 3 2200u Firmware+49 moreNov 21, 2024 Jul 14, 2022 N/A· v4 7.8 HIGH· v3 N/A· v2 A malformed SMI (System Management Interface) command may allow an attacker to establish a corrupted SMI Trigger Info data structure, potentially leading to out-of-bounds memory reads and writes when triggering an SMI re...Show more |
1Amd 35Ryzen 3 3200u Firmware Ryzen 3 3250u FirmwareRyzen 3 3300u Firmware+32 moreNov 21, 2024 Jul 14, 2022 N/A· v4 4.4 MEDIUM· v3 N/A· v2 An attacker with root account privileges can load any legitimately signed firmware image into the Audio Co-Processor (ACP,) irrespective of the respective signing key being declared as usable for authenticating an ACP fi...Show more |
1Amd 106Epyc 7232p Firmware Epyc 7252 FirmwareEpyc 7262 Firmware+103 moreNov 21, 2024 May 11, 2022 N/A· v4 5.5 MEDIUM· v3 4.9 MEDIUM· v2 Improper validation of the BIOS directory may allow for searches to read beyond the directory table copy in RAM, exposing out of bounds memory contents, resulting in a potential denial of service. |
1Amd 83Epyc 7232p Firmware Epyc 7252 FirmwareEpyc 7262 Firmware+80 moreNov 21, 2024 May 11, 2022 N/A· v4 5.5 MEDIUM· v3 4.9 MEDIUM· v2 Insufficient bound checks in the System Management Unit (SMU) may result in access to an invalid address space that could result in denial of service. |
1Amd 83Epyc 7232p Firmware Epyc 7252 FirmwareEpyc 7262 Firmware+80 moreNov 21, 2024 May 11, 2022 N/A· v4 5.5 MEDIUM· v3 4.9 MEDIUM· v2 Insufficient checks in System Management Unit (SMU) FeatureConfig may result in reenabling features potentially resulting in denial of resources and/or denial of service. |
1Amd 83Epyc 7232p Firmware Epyc 7252 FirmwareEpyc 7262 Firmware+80 moreNov 21, 2024 May 11, 2022 N/A· v4 5.5 MEDIUM· v3 4.9 MEDIUM· v2 Insufficient General Purpose IO (GPIO) bounds check in System Management Unit (SMU) may result in access/updates from/to invalid address space that could result in denial of service. |
1Amd 87Epyc 7232p Firmware Epyc 7252 FirmwareEpyc 7262 Firmware+84 moreNov 21, 2024 May 11, 2022 N/A· v4 5.5 MEDIUM· v3 4.9 MEDIUM· v2 Insufficient bound checks in the System Management Unit (SMU) may result in a system voltage malfunction that could result in denial of resources and/or possibly denial of service. |
1Amd 37Athlon 300u Firmware Ryzen 3 3200u FirmwareRyzen 3 3300u Firmware+34 moreNov 21, 2024 May 10, 2022 N/A· v4 6.2 MEDIUM· v3 4.9 MEDIUM· v2 A malicious or compromised UApp or ABL may coerce the bootloader into corrupting arbitrary memory potentially leading to loss of integrity of data. |
1Amd 30Ryzen 3 5300g Firmware Ryzen 3 5300ge FirmwareRyzen 5 2600 Firmware+27 moreNov 21, 2024 May 10, 2022 N/A· v4 5.5 MEDIUM· v3 4.9 MEDIUM· v2 Insufficient bound checks in System Management Unit (SMU) PCIe Hot Plug table may result in access/updates from/to invalid address space that could result in denial of service. |