← Back

Ryzen Threadripper 2920x Firmware

ryzen_threadripper_2920x_firmware

Vendor: Amd • 33 CVEs

CVEs (33)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Amd
49Ryzen 3 3100 Firmware
Ryzen 3 3300g FirmwareRyzen 3 3300x Firmware+46 more
Nov 21, 2024
May 12, 2022
N/A· v4
5.5 MEDIUM· v3
4.9 MEDIUM· v2
Insufficient DRAM address validation in System Management Unit (SMU) may result in a DMA (Direct Memory Access) read/write from/to invalid DRAM address that could result in denial of service.
1Amd
106Epyc 7232p Firmware
Epyc 7252 FirmwareEpyc 7262 Firmware+103 more
Nov 21, 2024
May 11, 2022
N/A· v4
5.5 MEDIUM· v3
4.9 MEDIUM· v2
Improper validation of the BIOS directory may allow for searches to read beyond the directory table copy in RAM, exposing out of bounds memory contents, resulting in a potential denial of service.
1Amd
83Epyc 7232p Firmware
Epyc 7252 FirmwareEpyc 7262 Firmware+80 more
Nov 21, 2024
May 11, 2022
N/A· v4
5.5 MEDIUM· v3
4.9 MEDIUM· v2
Insufficient bound checks in the System Management Unit (SMU) may result in access to an invalid address space that could result in denial of service.
1Amd
83Epyc 7232p Firmware
Epyc 7252 FirmwareEpyc 7262 Firmware+80 more
Nov 21, 2024
May 11, 2022
N/A· v4
5.5 MEDIUM· v3
4.9 MEDIUM· v2
Insufficient checks in System Management Unit (SMU) FeatureConfig may result in reenabling features potentially resulting in denial of resources and/or denial of service.
1Amd
83Epyc 7232p Firmware
Epyc 7252 FirmwareEpyc 7262 Firmware+80 more
Nov 21, 2024
May 11, 2022
N/A· v4
5.5 MEDIUM· v3
4.9 MEDIUM· v2
Insufficient General Purpose IO (GPIO) bounds check in System Management Unit (SMU) may result in access/updates from/to invalid address space that could result in denial of service.
1Amd
87Epyc 7232p Firmware
Epyc 7252 FirmwareEpyc 7262 Firmware+84 more
Nov 21, 2024
May 11, 2022
N/A· v4
5.5 MEDIUM· v3
4.9 MEDIUM· v2
Insufficient bound checks in the System Management Unit (SMU) may result in a system voltage malfunction that could result in denial of resources and/or possibly denial of service.
1Amd
37Athlon 300u Firmware
Ryzen 3 3200u FirmwareRyzen 3 3300u Firmware+34 more
Nov 21, 2024
May 10, 2022
N/A· v4
6.2 MEDIUM· v3
4.9 MEDIUM· v2
A malicious or compromised UApp or ABL may coerce the bootloader into corrupting arbitrary memory potentially leading to loss of integrity of data.
1Amd
30Ryzen 3 5300g Firmware
Ryzen 3 5300ge FirmwareRyzen 5 2600 Firmware+27 more
Nov 21, 2024
May 10, 2022
N/A· v4
5.5 MEDIUM· v3
4.9 MEDIUM· v2
Insufficient bound checks in System Management Unit (SMU) PCIe Hot Plug table may result in access/updates from/to invalid address space that could result in denial of service.
1Amd
126A10 9600p Firmware
A10 9630p FirmwareA12 9700p Firmware+123 more
Nov 21, 2024
Mar 11, 2022
N/A· v4
5.6 MEDIUM· v3
1.9 LOW· v2
LFENCE/JMP (mitigation V2-2) may not sufficiently mitigate CVE-2017-5715 on some AMD CPUs.
1Amd
126A10 9600p Firmware
A10 9630p FirmwareA12 9700p Firmware+123 more
Nov 21, 2024
Mar 11, 2022
N/A· v4
6.5 MEDIUM· v3
2.1 LOW· v2
Some AMD CPUs may transiently execute beyond unconditional direct branches, which may potentially result in data leakage.
1Amd
63Athlon 3050ge Firmware
Athlon 3150g FirmwareAthlon 3150ge Firmware+60 more
Nov 21, 2024
Feb 4, 2022
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
When combined with specific software sequences, AMD CPUs may transiently execute non-canonical loads and store using only the lower 48 address bits potentially resulting in data leakage.
1Amd
112Epyc 7002 Firmware
Epyc 7003 FirmwareEpyc 7232p Firmware+109 more
Nov 21, 2024
Nov 16, 2021
N/A· v4
5.5 MEDIUM· v3
2.1 LOW· v2
Insufficient DRAM address validation in System Management Unit (SMU) may result in a DMA read from invalid DRAM address to SRAM resulting in SMU not servicing further requests.
1Amd
95Epyc 7002 Firmware
Epyc 7003 FirmwareEpyc 7232p Firmware+92 more
Nov 21, 2024
Nov 16, 2021
N/A· v4
5.5 MEDIUM· v3
4.9 MEDIUM· v2
Insufficient bounds checking in System Management Unit (SMU) may cause invalid memory accesses/updates that could result in SMU hang and subsequent failure to service any further requests from other components.