Modified
Published: 14 Nov 2023, 18:53
Last modified:03 Aug 2024, 20:26

Vulnerability Summary

Overall Risk (default)
low
20/100
CVSS Score
4.9 MEDIUM
v3.1 (nvd)
EPSS Score
0.04% LOW
0% probability +0.01%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

14 Nov 2023, 18:53
Published
Vulnerability first disclosed
03 Aug 2024, 20:26
Last Modified
Vulnerability information updated

Description

Failure to validate the value in APCB may allow a privileged attacker to tamper with the APCB token to force an out-of-bounds memory read potentially resulting in a denial of service.

CVSS Metrics

  • v3.1LOWScore: 1.9CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:L
  • v3.1MEDIUMScore: 4.9CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H

EPSS Trends

Current EPSS score: 0.04% Percentile: 13%

Techniques & Countermeasures

  • CWE-125Out-of-bounds Read

    The product reads data past the end, or before the beginning, of the intended buffer.

Affected Systems

  • amd2nd gen amd epyc™ processors

    various

  • amd3rd gen amd epyc™ processors

    various

  • amd4th gen amd epyc™ processors

    various

  • amdamd epyc™ embedded 7002

    various

  • amdamd epyc™ embedded 7003

    various

  • amdepyc_7203_firmware

    < milanpi_1.0.0.a

  • amdepyc_7203p_firmware

    < milanpi_1.0.0.a

  • amdepyc_7232p_firmware

    < romepi_1.0.0.f

  • amdepyc_7252_firmware

    < romepi_1.0.0.f

  • amdepyc_7262_firmware

    < romepi_1.0.0.f

  • amdepyc_7272_firmware

    < romepi_1.0.0.f

  • amdepyc_7282_firmware

    < romepi_1.0.0.f

  • amdepyc_72f3_firmware

    < milanpi_1.0.0.a

  • amdepyc_7302_firmware

    < romepi_1.0.0.f

  • amdepyc_7302p_firmware

    < romepi_1.0.0.f

  • amdepyc_7303_firmware

    < milanpi_1.0.0.a

  • amdepyc_7303p_firmware

    < milanpi_1.0.0.a

  • amdepyc_7313_firmware

    < milanpi_1.0.0.a

  • amdepyc_7313p_firmware

    < milanpi_1.0.0.a

  • amdepyc_7343_firmware

    < milanpi_1.0.0.a

  • amdepyc_7352_firmware

    < romepi_1.0.0.f

  • amdepyc_7373x_firmware

    < milanpi_1.0.0.a

  • amdepyc_73f3_firmware

    < milanpi_1.0.0.a

  • amdepyc_7402_firmware

    < romepi_1.0.0.f

  • amdepyc_7402p_firmware

    < romepi_1.0.0.f

  • amdepyc_7413_firmware

    < milanpi_1.0.0.a

  • amdepyc_7443_firmware

    < milanpi_1.0.0.a

  • amdepyc_7443p_firmware

    < milanpi_1.0.0.a

  • amdepyc_7452_firmware

    < romepi_1.0.0.f

  • amdepyc_7453_firmware

    < milanpi_1.0.0.a

  • amdepyc_7473x_firmware

    < milanpi_1.0.0.a

  • amdepyc_74f3_firmware

    < milanpi_1.0.0.a

  • amdepyc_7502_firmware

    < romepi_1.0.0.f

  • amdepyc_7502p_firmware

    < romepi_1.0.0.f

  • amdepyc_7513_firmware

    < milanpi_1.0.0.a

  • amdepyc_7532_firmware

    < romepi_1.0.0.f

  • amdepyc_7542_firmware

    < romepi_1.0.0.f

  • amdepyc_7543_firmware

    < milanpi_1.0.0.a

  • amdepyc_7543p_firmware

    < milanpi_1.0.0.a

  • amdepyc_7552_firmware

    < romepi_1.0.0.f

  • amdepyc_7573x_firmware

    < milanpi_1.0.0.a

  • amdepyc_75f3_firmware

    < milanpi_1.0.0.a

  • amdepyc_7642_firmware

    < romepi_1.0.0.f

  • amdepyc_7643_firmware

    < milanpi_1.0.0.a

  • amdepyc_7643p_firmware

    < milanpi_1.0.0.a

  • amdepyc_7662_firmware

    < romepi_1.0.0.f

  • amdepyc_7663_firmware

    < milanpi_1.0.0.a

  • amdepyc_7663p_firmware

    < milanpi_1.0.0.a

  • amdepyc_7702_firmware

    < romepi_1.0.0.f

  • amdepyc_7702p_firmware

    < romepi_1.0.0.f

Showing first 50 affected entries in server-rendered view.

References (2)