AMD EPYC Embedded 3000
cpe:2.3:h:amd:epyc_embedded_7232p:*:*:*:*:*:*:*, +24 more
A vulnerability has been identified in various AMD processors, including Ryzen and Athlon mobile and desktop series, as well as EPYC embedded series processors. This vulnerability arises from improper input validation in the system management mode (SMM), which could enable a privileged attacker to overwrite arbitrary memory. Such an action may lead to arbitrary code execution at the SMM level.
Exploitation of this vulnerability could result in unauthorized memory modification, allowing for arbitrary code execution within the system management mode, a highly privileged execution environment.
Users are advised to update to the latest Platform Initialization (PI) firmware version. Specific update instructions can be obtained from the original equipment manufacturer (OEM).
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.