ZeroHour

CVE-2022-23821

CVSS 3.1
9.8 critical
EPSS
<1%p60
Published
()
Modified
Description

Improper access control in System Management Mode (SMM) may allow an attacker to write to SPI ROM potentially leading to arbitrary code execution.

Vendors
amd
Products
ryzen 9 3900 firmware, ryzen 9 3900x firmware, ryzen 9 3900xt firmware, ryzen 9 3950x firmware, ryzen 7 3700x firmware, ryzen 7 3800x firmware, ryzen 7 3800xt firmware, ryzen 5 3500 firmware, ryzen 5 3500x firmware, ryzen 5 3600 firmware, ryzen 5 3600x firmware, ryzen 5 3600xt firmware
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.