Show filters
96 Total Results
Displaying 21-30 of 96
Sort by:
Attacker Value
Unknown
CVE-2023-20575
Disclosure Date: July 11, 2023 (last updated October 08, 2023)
A potential power side-channel vulnerability in some AMD processors may allow an authenticated attacker to use the power reporting functionality to monitor a program’s execution inside an AMD SEV VM potentially resulting in a leak of sensitive information.
0
Attacker Value
Unknown
CVE-2021-46756
Disclosure Date: May 09, 2023 (last updated October 08, 2023)
Insufficient validation of inputs in
SVC_MAP_USER_STACK in the ASP (AMD Secure Processor) bootloader may allow an
attacker with a malicious Uapp or ABL to send malformed or invalid syscall to
the bootloader resulting in a potential denial of service and loss of
integrity.
0
Attacker Value
Unknown
CVE-2023-20524
Disclosure Date: May 09, 2023 (last updated October 08, 2023)
An attacker with a compromised ASP could
possibly send malformed commands to an ASP on another CPU, resulting in an out
of bounds write, potentially leading to a loss a loss of integrity.
0
Attacker Value
Unknown
CVE-2023-20520
Disclosure Date: May 09, 2023 (last updated October 08, 2023)
Improper access control settings in ASP
Bootloader may allow an attacker to corrupt the return address causing a
stack-based buffer overrun potentially leading to arbitrary code execution.
0
Attacker Value
Unknown
CVE-2022-23818
Disclosure Date: May 09, 2023 (last updated October 08, 2023)
Insufficient input validation on the model
specific register: VM_HSAVE_PA may potentially lead to loss of SEV-SNP guest
memory integrity.
0
Attacker Value
Unknown
CVE-2021-46775
Disclosure Date: May 09, 2023 (last updated October 08, 2023)
Improper input validation in ABL may enable an
attacker with physical access, to perform arbitrary memory overwrites,
potentially leading to a loss of integrity and code execution.
0
Attacker Value
Unknown
CVE-2021-46769
Disclosure Date: May 09, 2023 (last updated October 08, 2023)
Insufficient syscall input validation in the ASP
Bootloader may allow a privileged attacker to execute arbitrary DMA copies,
which can lead to code execution.
0
Attacker Value
Unknown
CVE-2021-46764
Disclosure Date: May 09, 2023 (last updated October 08, 2023)
Improper validation of DRAM addresses in SMU may
allow an attacker to overwrite sensitive memory locations within the ASP
potentially resulting in a denial of service.
0
Attacker Value
Unknown
CVE-2021-46763
Disclosure Date: May 09, 2023 (last updated October 08, 2023)
Insufficient input validation in the SMU may
enable a privileged attacker to write beyond the intended bounds of a shared
memory buffer potentially leading to a loss of integrity.
0
Attacker Value
Unknown
CVE-2021-46762
Disclosure Date: May 09, 2023 (last updated June 18, 2024)
Insufficient input validation in the SMU may
allow an attacker to corrupt SMU SRAM potentially leading to a loss of
integrity or denial of service.
0