ZeroHour

CVE-2022-23820

CVSS 3.1
9.8 critical
EPSS
<1%p51
Published
()
Modified
Description

Failure to validate the AMD SMM communication buffer may allow an attacker to corrupt the SMRAM potentially leading to arbitrary code execution.

Vendors
amd
Products
ryzen 9 3900 firmware, ryzen 9 3900x firmware, ryzen 9 3900xt firmware, ryzen 9 3950x firmware, ryzen 7 3700x firmware, ryzen 7 3800x firmware, ryzen 7 3800xt firmware, ryzen 5 3500 firmware, ryzen 5 3500x firmware, ryzen 5 3600 firmware, ryzen 5 3600x firmware, ryzen 5 3600xt firmware
Weakness
CWE-20
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.