Known Vulnerabilities for Epyc 7001 Firmware by Amd
Listed below are 10 of the newest known vulnerabilities associated with "Epyc 7001 Firmware" by "Amd".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2022-23825 | Aliases in the branch predictor may cause some AMD processors to predict the wrong branch type potentially leading to informa... | 6.5 - MEDIUM | 2022-07-14 | 2024-02-04 |
| CVE-2022-23824 | IBPB may not prevent return branch predictions from being specified by pre-IBPB branch targets leading to a potential informa... | 5.5 - MEDIUM | 2022-11-09 | 2024-02-04 |
| CVE-2022-23823 | A potential vulnerability in some AMD processors using frequency scaling may allow an authenticated attacker to execute a tim... | 6.5 - MEDIUM | 2022-06-15 | 2022-06-29 |
| CVE-2021-26371 | A compromised or malicious ABL or UApp could send a SHA256 system call to the bootloader, which may result in exposure of ASP... | 5.5 - MEDIUM | 2023-05-09 | 2023-05-25 |
| CVE-2021-26356 | A TOCTOU in ASP bootloader may allow an attacker to tamper with the SPI ROM following data read to memory potentially resulti... | 7.4 - HIGH | 2023-05-09 | 2023-05-16 |
| CVE-2021-26342 | In SEV guest VMs, the CPU may fail to flush the Translation Lookaside Buffer (TLB) following a particular sequence of operati... | 3.3 - LOW | 2022-05-11 | 2022-05-19 |
| CVE-2021-26340 | A malicious hypervisor in conjunction with an unprivileged attacker process inside an SEV/SEV-ES guest VM may fail to flush t... | 8.4 - HIGH | 2021-12-10 | 2021-12-15 |
| CVE-2021-26335 | Improper input and range checking in the AMD Secure Processor (ASP) boot loader image header may allow an attacker to use att... | 7.8 - HIGH | 2021-11-16 | 2022-05-12 |
| CVE-2021-26331 | AMD System Management Unit (SMU) contains a potential issue where a malicious user may be able to manipulate mailbox entries ... | 7.8 - HIGH | 2021-11-16 | 2021-11-19 |
| CVE-2021-26330 | AMD System Management Unit (SMU) may experience a heap-based overflow which may result in a loss of resources. | 5.5 - MEDIUM | 2021-11-16 | 2021-11-19 |