VYPR

Epyc 7473x Firmware

by AMD

CVEs (32)

  • CVE-2021-26348MedMay 11, 2022
    risk 0.36cvss 5.5epss 0.00

    Failure to flush the Translation Lookaside Buffer (TLB) of the I/O memory management unit (IOMMU) may lead an IO device to write to memory it should not be able to access, resulting in a potential loss of integrity.

  • CVE-2021-26339MedMay 11, 2022
    risk 0.36cvss 5.5epss 0.00

    A bug in AMD CPU’s core logic may allow for an attacker, using specific code from an unprivileged VM, to trigger a CPU core hang resulting in a potential denial of service. AMD believes the specific code includes a specific x86 instruction sequence that would not be generated…

  • CVE-2023-20584MedAug 13, 2024
    risk 0.34cvss 5.3epss 0.00

    IOMMU improperly handles certain special address ranges with invalid device table entries (DTEs), which may allow an attacker with privileges and a compromised Hypervisor to induce DTE faults to bypass RMP checks in SEV-SNP, potentially leading to a loss of guest integrity.

  • CVE-2023-20566MedNov 14, 2023
    risk 0.34cvss 5.3epss 0.00

    Improper address validation in ASP with SNP enabled may potentially allow an attacker to compromise guest memory integrity.

  • CVE-2023-31347MedFeb 13, 2024
    risk 0.32cvss 4.9epss 0.00

    Due to a code bug in Secure_TSC, SEV firmware may allow an attacker with high privileges to cause a guest to observe an incorrect TSC when Secure TSC is enabled potentially resulting in a loss of guest integrity.  

  • CVE-2023-20569MedAug 8, 2023
    risk 0.31cvss 4.7epss 0.07

    A side channel vulnerability on some of the AMD CPUs may allow an attacker to influence the return address prediction. This may result in speculative execution at an attacker-controlled address, potentially leading to information disclosure.

  • CVE-2021-26347MedMay 11, 2022
    risk 0.31cvss 4.7epss 0.00

    Failure to validate the integer operand in ASP (AMD Secure Processor) bootloader may allow an attacker to introduce an integer overflow in the L2 directory table in SPI flash resulting in a potential denial of service.

  • CVE-2021-46762LowMay 9, 2023
    risk 0.25cvss 3.9epss 0.00

    Insufficient input validation in the SMU may allow an attacker to corrupt SMU SRAM potentially leading to a loss of integrity or denial of service.

  • CVE-2023-20573LowJan 11, 2024
    risk 0.21cvss 3.2epss 0.00

    A privileged attacker can prevent delivery of debug exceptions to SEV-SNP guests potentially resulting in guests not receiving expected debug information.

  • CVE-2023-20521LowNov 14, 2023
    risk 0.21cvss 3.3epss 0.00

    TOCTOU in the ASP Bootloader may allow an attacker with physical access to tamper with SPI ROM records after memory content verification, potentially leading to loss of confidentiality or a denial of service.

  • CVE-2022-23830LowNov 14, 2023
    risk 0.12cvss 1.9epss 0.00

    SMM configuration may not be immutable, as intended, when SNP is enabled resulting in a potential limited loss of guest memory integrity.

  • CVE-2021-26345LowNov 14, 2023
    risk 0.12cvss 1.9epss 0.00

    Failure to validate the value in APCB may allow a privileged attacker to tamper with the APCB token to force an out-of-bounds memory read potentially resulting in a denial of service.

Page 2 of 2