Local Attacker Could Load Arbitrary Bitstreams
CVE-2023-20570
Key Information:
- Vendor
Amd
- Status
- Vendor
- CVE Published:
- 13 February 2024
What is CVE-2023-20570?
The vulnerability involves a deficiency in the verification of data authenticity within the configuration state machine of AMD products. This insufficiency may enable a local attacker to load arbitrary bitstreams, which can lead to unauthorized access and potential manipulation of the system. The affected configuration state machine is critical for maintaining the integrity and security of the operating environment, highlighting the importance of addressing this vulnerability to safeguard against possible exploitation.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Alveo™ Card (UltraScale™and UltraScale+™ based) all
Artix™ UltraScale+™ FPGA all
Kintex™ UltraScale™ FPGA all
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved