Medium severity6.7NVD Advisory· Published Dec 10, 2021· Updated Jun 17, 2026
CVE-2020-12890
CVE-2020-12890
Description
Improper handling of pointers in the System Management Mode (SMM) handling code may allow for a privileged attacker with physical or administrative access to potentially manipulate the AMD Generic Encapsulated Software Architecture (AGESA) to execute arbitrary code undetected by the operating system.
Affected products
3- cpe:2.3:o:amd:amd_generic_encapsulated_software_architecture:-:*:*:*:*:*:*:*
- Range: Processor EPYC
Patches
Vulnerability mechanics
References
1- www.amd.com/en/corporate/product-securitynvdVendor Advisory
News mentions
0No linked articles in our index yet.