AMD Secure Processor Improper Syscall Input Validation Vulnerability Allowing Kernel Memory Inference
Vulnerability
A vulnerability exists in the AMD Secure Processor (ASP) due to improper validation of syscall input. This flaw may cause the kernel to read syscall parameters from its own memory space, potentially allowing an attacker to infer kernel memory contents, which could lead to unauthorized information disclosure.
Impact
Exploitation of this vulnerability could result in unauthorized access to kernel memory, allowing an attacker to infer sensitive information from that memory.
Remediation
Users are advised to update to the Platform Initialization (PI) version 1.0.0.E. This update is available through the AMD Key Distribution Server (KDS).
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
