CVE-2023-20569

Advisory lineage Upstream: 0 Downstream: 100
Modified
Published: 08 Aug 2023, 17:02
Last modified:23 Sept 2024, 03:18

Vulnerability Summary

Overall Risk (default)
medium
29/100
CVSS Score
4.7 MEDIUM
v3.1 (nvd)
EPSS Score
1.95% LOW
2% probability +1.30%
KEV
Not listed
Ransomware
No reports
Public exploits
1 found
Dark Web
Not detected

Timeline

08 Aug 2023, 17:02
Published
Vulnerability first disclosed
23 Sept 2024, 03:18
Last Modified
Vulnerability information updated

Description

A side channel vulnerability on some of the AMD CPUs may allow an attacker to influence the return address prediction. This may result in speculative execution at an attacker-controlled address, potentially leading to information disclosure.

CVSS Metrics

  • v3.1MEDIUMScore: 4.7CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N

EPSS Trends

Current EPSS score: 1.95% Percentile: 84%

Techniques & Countermeasures

  • CWE-203Observable Discrepancy

    The product behaves differently or sends different responses under different circumstances in a way that is observable to an unauthorized actor.

Affected Systems

  • amd1st gen amd epyc™ processors

    various

  • amd2nd gen amd epyc™ processors

    various

  • amd3rd gen amd epyc™ processors

    various

  • amd4th gen amd epyc™ processors

    various

  • amdathlon™ 3000 series mobile processors with radeon™ graphics

    various

  • amdathlon™ 3000 series processors with radeon™ graphics

    various

  • amdathlon™ pro 3000 series processors with radeon™ vega graphics

    various

  • amdepyc_72f3_firmware

    < milanpi_1.0.0.c

  • amdepyc_7313_firmware

    < milanpi_1.0.0.c

  • amdepyc_7313p_firmware

    < milanpi_1.0.0.c

  • amdepyc_7343_firmware

    < milanpi_1.0.0.c

  • amdepyc_7373x_firmware

    < milanpi_1.0.0.c

  • amdepyc_73f3_firmware

    < milanpi_1.0.0.c

  • amdepyc_7413_firmware

    < milanpi_1.0.0.c

  • amdepyc_7443_firmware

    < milanpi_1.0.0.c

  • amdepyc_7443p_firmware

    < milanpi_1.0.0.c

  • amdepyc_7453_firmware

    < milanpi_1.0.0.c

  • amdepyc_7473x_firmware

    < milanpi_1.0.0.c

  • amdepyc_74f3_firmware

    < milanpi_1.0.0.c

  • amdepyc_7513_firmware

    < milanpi_1.0.0.c

  • amdepyc_7543_firmware

    < milanpi_1.0.0.c

  • amdepyc_7543p_firmware

    < milanpi_1.0.0.c

  • amdepyc_7573x_firmware

    < milanpi_1.0.0.c

  • amdepyc_75f3_firmware

    < milanpi_1.0.0.c

  • amdepyc_7643_firmware

    < milanpi_1.0.0.c

  • amdepyc_7663_firmware

    < milanpi_1.0.0.c

  • amdepyc_7713_firmware

    < milanpi_1.0.0.c

  • amdepyc_7713p_firmware

    < milanpi_1.0.0.c

  • amdepyc_7763_firmware

    < milanpi_1.0.0.c

  • amdepyc_7773x_firmware

    < milanpi_1.0.0.c

  • amdepyc_9124_firmware

    < genoapi_1.0.0.9

  • amdepyc_9174f_firmware

    < genoapi_1.0.0.9

  • amdepyc_9184x_firmware

    < genoapi_1.0.0.9

  • amdepyc_9224_firmware

    < genoapi_1.0.0.9

  • amdepyc_9254_firmware

    < genoapi_1.0.0.9

  • amdepyc_9274f_firmware

    < genoapi_1.0.0.9

  • amdepyc_9334_firmware

    < genoapi_1.0.0.9

  • amdepyc_9354_firmware

    < genoapi_1.0.0.9

  • amdepyc_9354p_firmware

    < genoapi_1.0.0.9

  • amdepyc_9374f_firmware

    < genoapi_1.0.0.9

  • amdepyc_9384x_firmware

    < genoapi_1.0.0.9

  • amdepyc_9454_firmware

    < genoapi_1.0.0.9

  • amdepyc_9454p_firmware

    < genoapi_1.0.0.9

  • amdepyc_9474f_firmware

    < genoapi_1.0.0.9

  • amdepyc_9534_firmware

    < genoapi_1.0.0.9

  • amdepyc_9554_firmware

    < genoapi_1.0.0.9

  • amdepyc_9554p_firmware

    < genoapi_1.0.0.9

  • amdepyc_9634_firmware

    < genoapi_1.0.0.9

  • amdepyc_9654_firmware

    < genoapi_1.0.0.9

  • amdepyc_9654p_firmware

    < genoapi_1.0.0.9

Showing first 50 affected entries in server-rendered view.

References (12)