Transient Execution Vulnerability in AMD CPUs
CVE-2025-54505

2LOW

What is CVE-2025-54505?

A transient execution vulnerability has been identified in certain AMD CPUs, which could potentially allow an attacker with local user privileges to exploit the floating point divisor unit. This exploitation may result in unauthorized data access, leading to a compromise of confidentiality.

Affected Version(s)

AMD EPYC™ 7001 Series Processors OS update

AMD EPYC™ Embedded 3000 Series Processors OS Update

References

CVSS V4

Score:
2
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.