Known Vulnerabilities for products from Amperecomputing

Listed below are 6 of the newest known vulnerabilities associated with the vendor "Amperecomputing".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2022-46892 json In Ampere AltraMax and Ampere Altra before 2.10c, improper access controls allows the OS to reinitialize a disabled root comp... 9.8 - CRITICAL 2023-02-15 2023-02-24
CVE-2022-37459 json Ampere Altra devices before 1.08g and Ampere Altra Max devices before 2.05a allow attackers to control the predictions for re... 7.8 - HIGH 2022-08-17 2022-08-18
CVE-2022-35888 json Ampere Altra and Ampere Altra Max devices through 2022-07-15 allow attacks via Hertzbleed, which is a power side-channel atta... 6.5 - MEDIUM 2022-09-29 2022-10-03
CVE-2022-32295 json On Ampere Altra and AltraMax devices before SRP 1.09, the Altra reference design of UEFI accesses allows insecure access to S... 9.8 - CRITICAL 2022-07-01 2023-08-08
CVE-2022-25368 json Spectre BHB is a variant of Spectre-v2 in which malicious code uses the shared branch history (stored in the CPU BHB) to infl... 4.7 - MEDIUM 2022-03-10 2022-03-16
CVE-2021-45454 json Ampere Altra before SRP 1.08b and Altra Max​ before SRP 2.05 allow information disclosure of power telemetry via HWmon. 7.5 - HIGH 2022-08-17 2023-11-07