Show filters
6 Total Results
Displaying 1-6 of 6
Sort by:
Attacker Value
Unknown

CVE-2023-31310

Disclosure Date: August 13, 2024 (last updated August 14, 2024)
Improper input validation in Power Management Firmware (PMFW) may allow an attacker with privileges to send a malformed input for the "set temperature input selection" command, potentially resulting in a loss of integrity and/or availability.
0
Attacker Value
Unknown

CVE-2023-31305

Disclosure Date: August 13, 2024 (last updated August 14, 2024)
Generation of weak and predictable Initialization Vector (IV) in PMFW (Power Management Firmware) may allow an attacker with privileges to reuse IV values to reverse-engineer debug data, potentially resulting in information disclosure.
0
Attacker Value
Unknown

CVE-2023-31304

Disclosure Date: August 13, 2024 (last updated August 14, 2024)
Improper input validation in SMU may allow an attacker with privileges and a compromised physical function (PF)     to modify the PCIe® lane count and speed, potentially leading to a loss of availability.
0
Attacker Value
Unknown

CVE-2023-20513

Disclosure Date: August 13, 2024 (last updated August 14, 2024)
An insufficient bounds check in PMFW (Power Management Firmware) may allow an attacker to utilize a malicious VF (virtualization function) to send a malformed message, potentially resulting in a denial of service.
0
Attacker Value
Unknown

CVE-2023-20512

Disclosure Date: August 13, 2024 (last updated August 14, 2024)
A hardcoded AES key in PMFW may result in a privileged attacker gaining access to the key, potentially resulting in internal debug information leakage.
0
Attacker Value
Unknown

CVE-2023-20509

Disclosure Date: August 13, 2024 (last updated August 14, 2024)
An insufficient DRAM address validation in PMFW may allow a privileged attacker to perform a DMA read from an invalid DRAM address to SRAM, potentially resulting in loss of data integrity.
0