Home/Product/amd ryzen 9 5900hs firmware
Product

amd ryzen 9 5900hs firmware

42 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2023-20579
< cezannepi-fp6_1.0.1.0
Improper Access Control in the AMD SPI protection feature may allow a user with Ring0 (kernel mode) privileged access to bypass pr
6.0MEDIUM
CVE-2023-20596
< cezannepi-fp6_1.0.0.fa
Improper input validation in the SMM Supervisor may allow an attacker with a compromised SMI handler to gain Ring0 access potentia
9.8CRITICAL
CVE-2023-20571
< cezannepi-fp6_1.0.0.f
A race condition in System Management Mode (SMM) code may allow an attacker using a compromised user space to leverage CVE-2018-88
8.1HIGH
CVE-2023-20565
< cezannepi-fp6_1.0.0.f
Insufficient protections in System Management Mode (SMM) code may allow an attacker to potentially enable escalation of privilege
7.8HIGH
CVE-2023-20563
< cezannepi-fp6_1.0.0.f
Insufficient protections in System Management Mode (SMM) code may allow an attacker to potentially enable escalation of privilege
7.8HIGH
CVE-2022-23821
all versions
Improper access control in System Management Mode (SMM) may allow an attacker to write to SPI ROM potentially leading to arbitrary
9.8CRITICAL
CVE-2022-23820
all versions
Failure to validate the AMD SMM communication buffer may allow an attacker to corrupt the SMRAM potentially leading to arbitrary c
7.5HIGH
CVE-2021-46758
< cezannepi-fp6_1.0.0.c
Insufficient validation of SPI flash addresses in the ASP (AMD Secure Processor) bootloader may allow an attacker to read data in
6.1MEDIUM
CVE-2023-20589
all versions
An attacker with specialized hardware and physical access to an impacted device may be able to perform a voltage fault injection a
6.8MEDIUM
CVE-2023-20569
< cezannepi-fp6_1.0.0.fa
A side channel vulnerability on some of the AMD CPUs may allow an attacker to influence the return address prediction. This may re
4.7MEDIUM
CVE-2023-20555
< cezannepi-fp6_1.0.0.e
Insufficient input validation in CpmDisplayFeatureSmm may allow an attacker to corrupt SMM memory by overwriting an arbitrary bit
7.8HIGH
CVE-2021-26354
< cezannepi-fp6_1.0.0.8
Insufficient bounds checking in ASP may allow an attacker to issue a system call from a compromised ABL which may cause arbitrary
5.5MEDIUM
CVE-2023-20559
< cezannepi-fp6_1.0.0.9
Insufficient control flow management in AmdCpmGpioInitSmm may allow a privileged attacker to tamper with the SMM handler potential
8.8HIGH
CVE-2023-20558
< cezannepi-fp6_1.0.0.9
Insufficient control flow management in AmdCpmOemSmm may allow a privileged attacker to tamper with the SMM handler potentially le
8.8HIGH
CVE-2022-27672
all versions
When SMT is enabled, certain AMD processors may speculatively execute instructions using a target from the sibling thread after an
4.7MEDIUM
CVE-2021-26346
all versions
Failure to validate the integer operand in ASP (AMD Secure Processor) bootloader may allow an attacker to introduce an integer ove
5.5MEDIUM
CVE-2021-26316
all versions
Failure to validate the communication buffer and communication service in the BIOS may allow an attacker to tamper with the buffer
7.8HIGH
CVE-2022-23824
all versions
IBPB may not prevent return branch predictions from being specified by pre-IBPB branch targets leading to a potential information
5.5MEDIUM
CVE-2021-26393
all versions
Insufficient memory cleanup in the AMD Secure Processor (ASP) Trusted Execution Environment (TEE) may allow an authenticated attac
5.5MEDIUM
CVE-2021-26392
all versions
Insufficient verification of missing size check in 'LoadModule' may lead to an out-of-bounds write potentially allowing an attacke
7.8HIGH
CVE-2021-26391
all versions
Insufficient verification of multiple header signatures while loading a Trusted Application (TA) may allow an attacker with privil
7.8HIGH
CVE-2020-12931
all versions
Improper parameters handling in the AMD Secure Processor (ASP) kernel may allow a privileged attacker to elevate their privileges
7.8HIGH
CVE-2020-12930
all versions
Improper parameters handling in AMD Secure Processor (ASP) drivers may allow a privileged attacker to elevate their privileges pot
7.8HIGH
CVE-2021-46778
all versions
Execution unit scheduler contention may lead to a side channel vulnerability found on AMD CPU microarchitectures codenamed “Zen
5.6MEDIUM
CVE-2021-26384
< cezannepi-fp6_1.0.0.9
A malformed SMI (System Management Interface) command may allow an attacker to establish a corrupted SMI Trigger Info data structu
7.8HIGH
CVE-2021-26382
< cezannepi-fp6_1.0.0.9
An attacker with root account privileges can load any legitimately signed firmware image into the Audio Co-Processor (ACP,) irresp
4.4MEDIUM
CVE-2022-23823
all versions
A potential vulnerability in some AMD processors using frequency scaling may allow an authenticated attacker to execute a timing a
6.5MEDIUM
CVE-2021-26386
all versions
A malicious or compromised UApp or ABL may be used by an attacker to issue a malformed system call to the Stage 2 Bootloader poten
7.8HIGH
CVE-2021-26368
all versions
Insufficient check of the process type in Trusted OS (TOS) may allow an attacker with privileges to enable a lesser privileged pro
4.4MEDIUM
CVE-2021-26363
all versions
A malicious or compromised UApp or ABL could potentially change the value that the ASP uses for its reserved DRAM, to one outside
4.4MEDIUM
CVE-2021-26317
all versions
Failure to verify the protocol in SMM may allow an attacker to control the protocol and modify SPI flash resulting in a potential
7.8HIGH
CVE-2021-26369
all versions
A malicious or compromised UApp or ABL may be used by an attacker to send a malformed system call to the bootloader, resulting in
7.8HIGH
CVE-2021-26366
all versions
An attacker, who gained elevated privileges via some other vulnerability, may be able to read data from Boot ROM resulting in a lo
7.1HIGH
CVE-2021-26362
all versions
A malicious or compromised UApp or ABL may be used by an attacker to issue a malformed system call which results in mapping sensit
7.1HIGH
CVE-2021-26361
all versions
A malicious or compromised User Application (UApp) or AGESA Boot Loader (ABL) could be used by an attacker to exfiltrate arbitrary
5.5MEDIUM
CVE-2021-26351
all versions
Insufficient DRAM address validation in System Management Unit (SMU) may result in a DMA (Direct Memory Access) read/write from/to
5.5MEDIUM
CVE-2021-26388
< cezannepi-fp6_1.0.0.9
Improper validation of the BIOS directory may allow for searches to read beyond the directory table copy in RAM, exposing out of b
5.5MEDIUM
CVE-2021-26339
< cezannepi-fp6_1.0.0.9a
A bug in AMD CPU’s core logic may allow for an attacker, using specific code from an unprivileged VM, to trigger a CPU core hang
5.5MEDIUM
CVE-2021-26401
all versions
LFENCE/JMP (mitigation V2-2) may not sufficiently mitigate CVE-2017-5715 on some AMD CPUs.
5.6MEDIUM
CVE-2021-26341
all versions
Some AMD CPUs may transiently execute beyond unconditional direct branches, which may potentially result in data leakage.
6.5MEDIUM
CVE-2021-26337
all versions
Insufficient DRAM address validation in System Management Unit (SMU) may result in a DMA read from invalid DRAM address to SRAM re
5.5MEDIUM
CVE-2021-26336
all versions
Insufficient bounds checking in System Management Unit (SMU) may cause invalid memory accesses/updates that could result in SMU ha
5.5MEDIUM
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin