Known Vulnerabilities for Epyc 7002 Firmware by Amd
Listed below are 10 of the newest known vulnerabilities associated with "Epyc 7002 Firmware" by "Amd".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2023-20532 json | Insufficient input validation in the SMU may allow an attacker to improperly lock resources, potentially resulting in a denia... | 5.3 - MEDIUM | 2023-01-11 | 2023-11-07 |
| CVE-2023-20531 json | Insufficient bound checks in the SMU may allow an attacker to update the SRAM from/to address space to an invalid value poten... | 7.5 - HIGH | 2023-01-11 | 2023-11-07 |
| CVE-2023-20529 json | Insufficient bound checks in the SMU may allow an attacker to update the from/to address space to an invalid value potentiall... | 7.5 - HIGH | 2023-01-11 | 2023-11-07 |
| CVE-2023-20528 json | Insufficient input validation in the SMU may allow a physical attacker to exfiltrate SMU memory contents over the I2C bus pot... | 2.4 - LOW | 2023-01-11 | 2023-11-07 |
| CVE-2023-20527 json | Improper syscall input validation in the ASP Bootloader may allow a privileged attacker to read memory out-of-bounds, potenti... | 6.5 - MEDIUM | 2023-01-11 | 2023-11-07 |
| CVE-2023-20525 json | Insufficient syscall input validation in the ASP Bootloader may allow a privileged attacker to read memory outside the bounds... | 6.5 - MEDIUM | 2023-01-11 | 2023-11-07 |
| CVE-2023-20523 json | TOCTOU in the ASP may allow a physical attacker to write beyond the buffer bounds, potentially leading to a loss of integrity... | 5.7 - MEDIUM | 2023-01-11 | 2023-11-07 |
| CVE-2022-29900 json | Mis-trained branch predictions for return instructions may allow arbitrary speculative code execution under certain microarch... | 6.5 - MEDIUM | 2022-07-12 | 2024-02-04 |
| CVE-2022-23825 json | Aliases in the branch predictor may cause some AMD processors to predict the wrong branch type potentially leading to informa... | 6.5 - MEDIUM | 2022-07-14 | 2024-02-04 |
| CVE-2022-23824 json | IBPB may not prevent return branch predictions from being specified by pre-IBPB branch targets leading to a potential informa... | 5.5 - MEDIUM | 2022-11-09 | 2024-02-04 |