Show filters
340 Total Results
Displaying 71-80 of 340
Sort by:
Attacker Value
Unknown

CVE-2024-21972

Disclosure Date: April 23, 2024 (last updated April 24, 2024)
An out of bounds write vulnerability in the AMD Radeon™ user mode driver for DirectX® 11 could allow an attacker with access to a malformed shader to potentially achieve arbitrary code execution.
0
Attacker Value
Unknown

CVE-2024-2193

Disclosure Date: March 15, 2024 (last updated April 01, 2024)
A Speculative Race Condition (SRC) vulnerability that impacts modern CPU architectures supporting speculative execution (related to Spectre V1) has been disclosed. An unauthenticated attacker can exploit this vulnerability to disclose arbitrary data from the CPU using race conditions to access the speculative executable code paths.
0
Attacker Value
Unknown

CVE-2023-31347

Disclosure Date: February 13, 2024 (last updated October 23, 2024)
Due to a code bug in Secure_TSC, SEV firmware may allow an attacker with high privileges to cause a guest to observe an incorrect TSC when Secure TSC is enabled potentially resulting in a loss of guest integrity.  
Attacker Value
Unknown

CVE-2023-31346

Disclosure Date: February 13, 2024 (last updated October 25, 2024)
Failure to initialize memory in SEV Firmware may allow a privileged attacker to access stale data from other guests.
Attacker Value
Unknown

CVE-2023-20587

Disclosure Date: February 13, 2024 (last updated February 14, 2024)
Improper Access Control in System Management Mode (SMM) may allow an attacker access to the SPI flash potentially leading to arbitrary code execution.
0
Attacker Value
Unknown

CVE-2023-20579

Disclosure Date: February 13, 2024 (last updated October 23, 2024)
Improper Access Control in the AMD SPI protection feature may allow a user with Ring0 (kernel mode) privileged access to bypass protections potentially resulting in loss of integrity and availability.
Attacker Value
Unknown

CVE-2021-46757

Disclosure Date: February 13, 2024 (last updated October 25, 2024)
Insufficient checking of memory buffer in ASP Secure OS may allow an attacker with a malicious TA to read/write to the ASP Secure OS kernel virtual address space potentially leading to privilege escalation.
Attacker Value
Unknown

CVE-2023-20570

Disclosure Date: February 13, 2024 (last updated October 18, 2024)
Insufficient verification of data authenticity in the configuration state machine may allow a local attacker to potentially load arbitrary bitstreams.
Attacker Value
Unknown

CVE-2023-4969

Disclosure Date: January 16, 2024 (last updated January 24, 2024)
A GPU kernel can read sensitive data from another GPU kernel (even from another user or app) through an optimized GPU memory region called _local memory_ on various architectures.
Attacker Value
Unknown

CVE-2023-20573

Disclosure Date: January 11, 2024 (last updated January 19, 2024)
A privileged attacker can prevent delivery of debug exceptions to SEV-SNP guests potentially resulting in guests not receiving expected debug information.