VYPR

Ryzen 9 Pro 3900 Firmware

by AMD

CVEs (4)

  • CVE-2023-20559HigApr 2, 2023
    risk 0.57cvss 8.8epss 0.01

    Insufficient control flow management in AmdCpmGpioInitSmm may allow a privileged attacker to tamper with the SMM handler potentially leading to escalation of privileges.

  • CVE-2023-20558HigApr 2, 2023
    risk 0.57cvss 8.8epss 0.01

    Insufficient control flow management in AmdCpmOemSmm may allow a privileged attacker to tamper with the SMM handler potentially leading to an escalation of privileges.

  • CVE-2023-20593MedJul 24, 2023
    risk 0.36cvss 5.5epss 0.05

    An issue in “Zen 2” CPUs, under specific microarchitectural circumstances, may allow an attacker to potentially access sensitive information.

  • CVE-2022-27672MedMar 1, 2023
    risk 0.31cvss 4.7epss 0.00

    When SMT is enabled, certain AMD processors may speculatively execute instructions using a target from the sibling thread after an SMT mode switch potentially resulting in information disclosure.