Attacker Value
Unknown
0
CVE-2022-23820
0
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below:
Add References:
CVE-2022-23820
(Last updated June 18, 2024) ▾
MITRE ATT&CK
Log in to add MITRE ATT&CK tag
Add MITRE ATT&CK tactics and techniques that apply to this CVE.
MITRE ATT&CK
Select the MITRE ATT&CK Tactics that apply to this CVE
Collection
Select any Techniques used:
Command and Control
Select any Techniques used:
Credential Access
Select any Techniques used:
Defense Evasion
Select any Techniques used:
Discovery
Select any Techniques used:
Execution
Select any Techniques used:
Exfiltration
Select any Techniques used:
Impact
Select any Techniques used:
Initial Access
Select any Techniques used:
Lateral Movement
Select any Techniques used:
Persistence
Select any Techniques used:
Privilege Escalation
Select any Techniques used:
Topic Tags
Select the tags that apply to this CVE (Assessment added tags are disabled and cannot be removed)
What makes this of high-value to an attacker?
What makes this of low-value to an attacker?
Description
Failure to validate the AMD SMM communication buffer
may allow an attacker to corrupt the SMRAM potentially leading to arbitrary
code execution.
Add Assessment
No one has assessed this topic. Be the first to add your voice to the community.
CVSS V3 Severity and Metrics
Data provided by the National Vulnerability Database (NVD)
Base Score:
9.8 Critical
Impact Score:
5.9
Exploitability Score:
3.9
Attack Vector (AV):
Network
Attack Complexity (AC):
Low
Privileges Required (PR):
None
User Interaction (UI):
None
Scope (S):
Unchanged
Confidentiality (C):
High
Integrity (I):
High
Availability (A):
High
General Information
Offensive Application
Unknown
Utility Class
Unknown
Ports
Unknown
OS
Unknown
Vulnerable Versions
Ryzen™ 3000 series Desktop Processors “Matisse" various
AMD Ryzen™ 5000 Series Desktop Processors “Vermeer” various
AMD Ryzen™ 5000 Series Desktop Processor with Radeon™ Graphics “Cezanne” various
AMD Athlon™ 3000 Series Desktop Processors with Radeon™ Graphics “Picasso” AM4 various
AMD Ryzen™ Threadripper™ 2000 Series Processors “Colfax” Various
AMD Ryzen™ Threadripper™ 3000 Series Processors “Castle Peak” HEDT various
AMD Ryzen™ Threadripper™ PRO Processors “Castle Peak” WS SP3 various
AMD Ryzen™ Threadripper™ PRO 3000WX Series Processors “Chagall” WS various
AMD Athlon™ 3000 Series Mobile Processors with Radeon™ Graphics “Pollock” various
AMD Ryzen™ 3000 Series Mobile Processor with Radeon™ Graphics “Picasso” FP5 various
AMD Ryzen™ 4000 Series Mobile Processors with Radeon™ Graphics “Renoir” FP6 various
AMD Ryzen™ 5000 Series Mobile Processors with Radeon™ Graphics “Lucienne” various
AMD Ryzen™ 5000 Series Mobile Processors with Radeon™ Graphics “Cezanne” various
AMD Ryzen™ 6000 Series Processors with Radeon™ Graphics "Rembrandt" various
AMD Ryzen™ 7035 Series Processors with Radeon™ Graphics “Rembrandt-R” various
AMD Ryzen™ 5000 Series Processors with Radeon™ Graphics “Barcelo” various
AMD Ryzen™ 7030 Series Mobile Processors with Radeon™ Graphics “Barcelo-R” various
3rd Gen AMD EPYC™ Processors various
AMD EPYC™ Embedded 7003 various
AMD EPYC™ Embedded 7003 various
Prerequisites
Unknown
Discovered By
Unknown
PoC Author
Unknown
Metasploit Module
Unknown
Reporter
Unknown
Vendors
Products
- athlon 3015ce firmware pollockpi-ft5 1.0.0.5,
- athlon 3015e firmware pollockpi-ft5 1.0.0.5,
- ryzen 3 3100 firmware comboam4 pi 1.0.0.9,
- ryzen 3 3100 firmware comboam4 v2 pi 1.2.0.8,
- ryzen 3 3300u firmware picassopi-fp5 1.0.0.e,
- ryzen 3 3300x firmware comboam4 pi 1.0.0.9,
- ryzen 3 3300x firmware comboam4 v2 pi 1.2.0.8,
- ryzen 3 3350u firmware picassopi-fp5 1.0.0.e,
- ryzen 3 4300u firmware renoirpi-fp6 1.0.0.9,
- ryzen 3 5100 firmware comboam4v2 pi 1.2.0.8,
- ryzen 3 5125c firmware cezannepi-fp6 1.0.0.b,
- ryzen 3 5400u firmware cezannepi-fp6 1.0.0.b,
- ryzen 3 5425u firmware cezannepi-fp6 1.0.0.b,
- ryzen 3 7335u firmware rembrandtpi-fp7 1.0.0.2,
- ryzen 5 3450u firmware picassopi-fp5 1.0.0.e,
- ryzen 5 3500 firmware comboam4 pi 1.0.0.9,
- ryzen 5 3500 firmware comboam4 v2 pi 1.2.0.8,
- ryzen 5 3500c firmware picassopi-fp5 1.0.0.e,
- ryzen 5 3500u firmware picassopi-fp5 1.0.0.e,
- ryzen 5 3500x firmware comboam4 pi 1.0.0.9,
- ryzen 5 3500x firmware comboam4 v2 pi 1.2.0.8,
- ryzen 5 3550h firmware picassopi-fp5 1.0.0.e,
- ryzen 5 3580u firmware picassopi-fp5 1.0.0.e,
- ryzen 5 3600 firmware comboam4 pi 1.0.0.9,
- ryzen 5 3600 firmware comboam4 v2 pi 1.2.0.8,
- ryzen 5 3600x firmware comboam4 pi 1.0.0.9,
- ryzen 5 3600x firmware comboam4 v2 pi 1.2.0.8,
- ryzen 5 3600xt firmware comboam4 pi 1.0.0.9,
- ryzen 5 3600xt firmware comboam4 v2 pi 1.2.0.8,
- ryzen 5 4500u firmware renoirpi-fp6 1.0.0.9,
- ryzen 5 4600h firmware renoirpi-fp6 1.0.0.9,
- ryzen 5 4600hs firmware renoirpi-fp6 1.0.0.9,
- ryzen 5 4600u firmware renoirpi-fp6 1.0.0.9,
- ryzen 5 4680u firmware renoirpi-fp6 1.0.0.9,
- ryzen 5 5500 firmware comboam4v2 pi 1.2.0.8,
- ryzen 5 55003xd firmware comboam4v2 pi 1.2.0.8,
- ryzen 5 5500h firmware cezannepi-fp6 1.0.0.b,
- ryzen 5 5500x firmware comboam4v2 pi 1.2.0.8,
- ryzen 5 5560u firmware cezannepi-fp6 1.0.0.b,
- ryzen 5 5600 firmware comboam4 v2 pi 1.2.0.8,
- ryzen 5 56003xd firmware comboam4 v2 pi 1.2.0.8,
- ryzen 5 5600h firmware cezannepi-fp6 1.0.0.b,
- ryzen 5 5600hs firmware cezannepi-fp6 1.0.0.b,
- ryzen 5 5600u firmware cezannepi-fp6 1.0.0.b,
- ryzen 5 5600x firmware comboam4 v2 pi 1.2.0.8,
- ryzen 5 5625u firmware cezannepi-fp6 1.0.0.b,
- ryzen 5 6600h firmware rembrandtpi-fp7 1.0.0.2,
- ryzen 5 6600hs firmware rembrandtpi-fp7 1.0.0.2,
- ryzen 5 6600u firmware rembrandtpi-fp7 1.0.0.2,
- ryzen 5 7535hs firmware rembrandtpi-fp7 1.0.0.2,
- ryzen 5 7535u firmware rembrandtpi-fp7 1.0.0.2,
- ryzen 5 pro 3350g firmware comboam4 pi 1.0.0.9,
- ryzen 5 pro 3350g firmware comboam4 v2 pi 1.2.0.8,
- ryzen 5 pro 3350ge firmware comboam4 pi 1.0.0.9,
- ryzen 5 pro 3350ge firmware comboam4 v2 pi 1.2.0.8,
- ryzen 5 pro 3400g firmware comboam4 pi 1.0.0.9,
- ryzen 5 pro 3400g firmware comboam4 v2 pi 1.2.0.8,
- ryzen 5 pro 3400ge firmware comboam4 pi 1.0.0.9,
- ryzen 5 pro 3400ge firmware comboam4 v2 pi 1.2.0.8,
- ryzen 5 pro 5645 firmware comboam4 v2 pi 1.2.0.8,
- ryzen 7 3700c firmware picassopi-fp5 1.0.0.e,
- ryzen 7 3700u firmware picassopi-fp5 1.0.0.e,
- ryzen 7 3700x firmware comboam4 pi 1.0.0.9,
- ryzen 7 3700x firmware comboam4 v2 pi 1.2.0.8,
- ryzen 7 3750h firmware picassopi-fp5 1.0.0.e,
- ryzen 7 3780u firmware picassopi-fp5 1.0.0.e,
- ryzen 7 3800x firmware comboam4 pi 1.0.0.9,
- ryzen 7 3800x firmware comboam4 v2 pi 1.2.0.8,
- ryzen 7 3800xt firmware comboam4 pi 1.0.0.9,
- ryzen 7 3800xt firmware comboam4 v2 pi 1.2.0.8,
- ryzen 7 4700u firmware renoirpi-fp6 1.0.0.9,
- ryzen 7 4800h firmware renoirpi-fp6 1.0.0.9,
- ryzen 7 4800hs firmware renoirpi-fp6 1.0.0.9,
- ryzen 7 4800u firmware renoirpi-fp6 1.0.0.9,
- ryzen 7 4980u firmware renoirpi-fp6 1.0.0.9,
- ryzen 7 5700 firmware comboam4v2 pi 1.2.0.8,
- ryzen 7 5700x firmware comboam4 v2 pi 1.2.0.8,
- ryzen 7 5800 firmware comboam4 v2 pi 1.2.0.8,
- ryzen 7 5800h firmware cezannepi-fp6 1.0.0.b,
- ryzen 7 5800hs firmware cezannepi-fp6 1.0.0.b,
- ryzen 7 5800u firmware cezannepi-fp6 1.0.0.b,
- ryzen 7 5800x firmware comboam4 v2 pi 1.2.0.8,
- ryzen 7 5825u firmware cezannepi-fp6 1.0.0.b,
- ryzen 7 6800h firmware rembrandtpi-fp7 1.0.0.2,
- ryzen 7 6800hs firmware rembrandtpi-fp7 1.0.0.2,
- ryzen 7 6800u firmware rembrandtpi-fp7 1.0.0.2,
- ryzen 7 7735hs firmware rembrandtpi-fp7 1.0.0.2,
- ryzen 7 7735u firmware rembrandtpi-fp7 1.0.0.2,
- ryzen 7 7736u firmware rembrandtpi-fp7 1.0.0.2,
- ryzen 7 pro 5845 firmware comboam4 v2 pi 1.2.0.8,
- ryzen 9 3900 firmware comboam4 pi 1.0.0.9,
- ryzen 9 3900 firmware comboam4 v2 pi 1.2.0.8,
- ryzen 9 3900x firmware comboam4 pi 1.0.0.9,
- ryzen 9 3900x firmware comboam4 v2 pi 1.2.0.8,
- ryzen 9 3900xt firmware comboam4 pi 1.0.0.9,
- ryzen 9 3900xt firmware comboam4 v2 pi 1.2.0.8,
- ryzen 9 3950x firmware comboam4 pi 1.0.0.9,
- ryzen 9 3950x firmware comboam4 v2 pi 1.2.0.8,
- ryzen 9 4900h firmware renoirpi-fp6 1.0.0.9,
- ryzen 9 4900hs firmware renoirpi-fp6 1.0.0.9,
- ryzen 9 5900 firmware comboam4 v2 pi 1.2.0.8,
- ryzen 9 5900hs firmware cezannepi-fp6 1.0.0.b,
- ryzen 9 5900hx firmware cezannepi-fp6 1.0.0.b,
- ryzen 9 5900x firmware comboam4 v2 pi 1.2.0.8,
- ryzen 9 5950x firmware comboam4 v2 pi 1.2.0.8,
- ryzen 9 5980hs firmware cezannepi-fp6 1.0.0.b,
- ryzen 9 5980hx firmware cezannepi-fp6 1.0.0.b,
- ryzen 9 6900hs firmware rembrandtpi-fp7 1.0.0.2,
- ryzen 9 6900hx firmware rembrandtpi-fp7 1.0.0.2,
- ryzen 9 6980hs firmware rembrandtpi-fp7 1.0.0.2,
- ryzen 9 6980hx firmware rembrandtpi-fp7 1.0.0.2,
- ryzen 9 pro 5945 firmware comboam4 v2 pi 1.2.0.8,
- ryzen threadripper 2920x firmware summitpi-sp3r2 1.1.0.6,
- ryzen threadripper 2950x firmware summitpi-sp3r2 1.1.0.6,
- ryzen threadripper 2970wx firmware summitpi-sp3r2 1.1.0.6,
- ryzen threadripper 2990wx firmware summitpi-sp3r2 1.1.0.6,
- ryzen threadripper 3960x firmware castlepeakpi-sp3r2 1.1.0.8,
- ryzen threadripper 3970x firmware castlepeakpi-sp3r2 1.1.0.8,
- ryzen threadripper 3990x firmware castlepeakpi-sp3r2 1.1.0.8,
- ryzen threadripper pro 3945wx firmware castlepeakpi-sp3r2 1.1.0.8,
- ryzen threadripper pro 3955wx firmware castlepeakpi-sp3r2 1.1.0.8,
- ryzen threadripper pro 3975wx firmware castlepeakpi-sp3r2 1.1.0.8,
- ryzen threadripper pro 3995wx firmware castlepeakpi-sp3r2 1.1.0.8
References
Additional Info
Authenticated
Unknown
Exploitable
Unknown
Reliability
Unknown
Stability
Unknown
Available Mitigations
Unknown
Shelf Life
Unknown
Userbase/Installbase
Unknown
Patch Effectiveness
Unknown
Rapid7
Technical Analysis
Report as Emergent Threat Response
Report as Zero-day Exploit
Report as Exploited in the Wild
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below: