Known Vulnerabilities for Epyc 7743 Firmware by Amd
Listed below are 10 of the newest known vulnerabilities associated with "Epyc 7743 Firmware" by "Amd".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2023-20594 json | Improper initialization of variables in the DXE driver may allow a privileged user to leak sensitive information via local a... | 4.4 - MEDIUM | 2023-09-20 | 2023-09-22 |
| CVE-2023-20532 json | Insufficient input validation in the SMU may allow an attacker to improperly lock resources, potentially resulting in a denia... | 5.3 - MEDIUM | 2023-01-11 | 2023-11-07 |
| CVE-2023-20531 json | Insufficient bound checks in the SMU may allow an attacker to update the SRAM from/to address space to an invalid value poten... | 7.5 - HIGH | 2023-01-11 | 2023-11-07 |
| CVE-2023-20530 json | Insufficient input validation of BIOS mailbox messages in SMU may result in out-of-bounds memory reads potentially resulting ... | 7.5 - HIGH | 2023-01-11 | 2023-11-07 |
| CVE-2023-20529 json | Insufficient bound checks in the SMU may allow an attacker to update the from/to address space to an invalid value potentiall... | 7.5 - HIGH | 2023-01-11 | 2023-11-07 |
| CVE-2023-20528 json | Insufficient input validation in the SMU may allow a physical attacker to exfiltrate SMU memory contents over the I2C bus pot... | 2.4 - LOW | 2023-01-11 | 2023-11-07 |
| CVE-2023-20527 json | Improper syscall input validation in the ASP Bootloader may allow a privileged attacker to read memory out-of-bounds, potenti... | 6.5 - MEDIUM | 2023-01-11 | 2023-11-07 |
| CVE-2023-20525 json | Insufficient syscall input validation in the ASP Bootloader may allow a privileged attacker to read memory outside the bounds... | 6.5 - MEDIUM | 2023-01-11 | 2023-11-07 |
| CVE-2023-20523 json | TOCTOU in the ASP may allow a physical attacker to write beyond the buffer bounds, potentially leading to a loss of integrity... | 5.7 - MEDIUM | 2023-01-11 | 2023-11-07 |
| CVE-2021-26402 json | Insufficient bounds checking in ASP (AMD Secure Processor) firmware while handling BIOS mailbox commands, may allow an attack... | 7.1 - HIGH | 2023-01-11 | 2023-11-07 |