Buffer Validation Flaw in AMD Products
CVE-2022-23820

7.5HIGH

Summary

A buffer validation flaw in AMD's SMM communication buffer poses a security risk by allowing potential attackers to corrupt the SMRAM. This vulnerability enables the possibility of executing arbitrary code, which can lead to unauthorized access and manipulation of the system. To mitigate this risk, users are advised to apply the latest security patches from AMD.

Affected Version(s)

3rd Gen AMD EPYC™ Processors x86 various

AMD Athlon™ 3000 Series Desktop Processors with Radeon™ Graphics “Picasso” AM4 x86 various

AMD Athlon™ 3000 Series Mobile Processors with Radeon™ Graphics “Pollock” x86 various

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
High
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.