threat
engine
.sh
Back
·
··:··
Home
/
Product
/
amd athlon gold 3150g firmware
Product
amd athlon gold 3150g firmware
12 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
Sort
Newest first
Oldest first
Highest CVSS
Lowest CVSS
Min CVSS
Any
4.0+
7.0+ (High)
9.0+ (Critical)
Published since
Reset
CVE-2022-23815
all versions
Improper bounds checking in APCB firmware may allow an attacker to perform an out of bounds write, corrupting the APCB entry, pote
7.5
HIGH
CVE-2021-26367
< comboam4pi_1.0.0.9
A malicious attacker in x86 can misconfigure the Trusted Memory Regions (TMRs), which may allow the attacker to set an arbitrary a
5.7
MEDIUM
CVE-2023-20521
all versions
TOCTOU in the ASP Bootloader may allow an attacker with physical access to tamper with SPI ROM records after memory content verifi
3.3
LOW
CVE-2023-20589
all versions
An attacker with specialized hardware and physical access to an impacted device may be able to perform a voltage fault injection a
6.8
MEDIUM
CVE-2023-20588
all versions
A division-by-zero error on some AMD processors can potentially return speculative data resulting in loss of confidentiality.
5.5
MEDIUM
CVE-2023-20555
< comboam4piv1_1.0.0.a
Insufficient input validation in CpmDisplayFeatureSmm may allow an attacker to corrupt SMM memory by overwriting an arbitrary bit
7.8
HIGH
CVE-2021-46794
all versions
Insufficient bounds checking in ASP (AMD Secure Processor) may allow for an out of bounds read in SMI (System Management Interface
7.5
HIGH
CVE-2021-46792
all versions
Time-of-check Time-of-use (TOCTOU) in the BIOS2PSP command may allow an attacker with a malicious BIOS to create a race condition
5.9
MEDIUM
CVE-2021-46759
all versions
Improper syscall input validation in AMD TEE (Trusted Execution Environment) may allow an attacker with physical access and contro
6.1
MEDIUM
CVE-2021-46754
all versions
Insufficient input validation in the ASP (AMD Secure Processor) bootloader may allow an attacker with a compromised Uapp or ABL to
9.1
CRITICAL
CVE-2021-46753
all versions
Failure to validate the length fields of the ASP (AMD Secure Processor) sensor fusion hub headers may allow an attacker with a mal
9.1
CRITICAL
CVE-2021-46749
all versions
Insufficient bounds checking in ASP (AMD Secure Processor) may allow for an out of bounds read in SMI (System Management Interface
7.5
HIGH
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh · Open-source threat intelligence platform · 100+ authoritative sources · Every fact traces to its origin