Home/Product/amd ryzen 5 5700ge firmware
Product

amd ryzen 5 5700ge firmware

16 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2023-20597
all versions
Improper initialization of variables in the DXE driver may allow a privileged user to leak sensitive information via local access.
5.5MEDIUM
CVE-2023-20594
all versions
Improper initialization of variables in the DXE driver may allow a privileged user to leak sensitive information via local access.
4.4MEDIUM
CVE-2021-26346
all versions
Failure to validate the integer operand in ASP (AMD Secure Processor) bootloader may allow an attacker to introduce an integer ove
5.5MEDIUM
CVE-2021-26316
all versions
Failure to validate the communication buffer and communication service in the BIOS may allow an attacker to tamper with the buffer
7.8HIGH
CVE-2021-46778
all versions
Execution unit scheduler contention may lead to a side channel vulnerability found on AMD CPU microarchitectures codenamed “Zen
5.6MEDIUM
CVE-2021-26386
all versions
A malicious or compromised UApp or ABL may be used by an attacker to issue a malformed system call to the Stage 2 Bootloader poten
7.8HIGH
CVE-2021-26368
all versions
Insufficient check of the process type in Trusted OS (TOS) may allow an attacker with privileges to enable a lesser privileged pro
4.4MEDIUM
CVE-2021-26363
all versions
A malicious or compromised UApp or ABL could potentially change the value that the ASP uses for its reserved DRAM, to one outside
4.4MEDIUM
CVE-2021-26317
all versions
Failure to verify the protocol in SMM may allow an attacker to control the protocol and modify SPI flash resulting in a potential
7.8HIGH
CVE-2021-26369
all versions
A malicious or compromised UApp or ABL may be used by an attacker to send a malformed system call to the bootloader, resulting in
7.8HIGH
CVE-2021-26366
all versions
An attacker, who gained elevated privileges via some other vulnerability, may be able to read data from Boot ROM resulting in a lo
7.1HIGH
CVE-2021-26362
all versions
A malicious or compromised UApp or ABL may be used by an attacker to issue a malformed system call which results in mapping sensit
7.1HIGH
CVE-2021-26361
all versions
A malicious or compromised User Application (UApp) or AGESA Boot Loader (ABL) could be used by an attacker to exfiltrate arbitrary
5.5MEDIUM
CVE-2021-26351
all versions
Insufficient DRAM address validation in System Management Unit (SMU) may result in a DMA (Direct Memory Access) read/write from/to
5.5MEDIUM
CVE-2021-26339
< comboam4_v2_pi_1.2.0.6c
A bug in AMD CPU’s core logic may allow for an attacker, using specific code from an unprivileged VM, to trigger a CPU core hang
5.5MEDIUM
CVE-2021-26336
all versions
Insufficient bounds checking in System Management Unit (SMU) may cause invalid memory accesses/updates that could result in SMU ha
5.5MEDIUM
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin