AMD EPYC and Ryzen Processors Improper Access Control Vulnerability in On-Chip Debug Interface

Vulnerability

A vulnerability exists in an on-chip debug interface of AMD EPYC and Ryzen processors, allowing a privileged attacker to enable the debug interface. This could potentially lead to a compromise of data confidentiality or integrity. The issue arises from improper access control, which could be exploited by an attacker with administrative privileges.

Impact

Exploitation of this vulnerability could result in unauthorized access to the debug interface, allowing for potential manipulation or interception of data, thereby compromising data confidentiality or integrity.

Remediation

Users are advised to update to the latest Platform Initialization (PI) or Secure Encrypted Virtualization (SEV) firmware version. For AMD EPYC processors, the specific update details can be found in the AMD Security Bulletin AMD-SB-3023. AMD Ryzen processors can refer to the AMD Security Bulletin AMD-SB-4013 for update instructions.

Added: Feb 12, 2026, 6:46 PM
Updated: Feb 12, 2026, 6:46 PM

Vulnerability Rating

Custom Algorithm
spread
7.8
impact
5.0
exploitability
2.8
remediation
7.7
relevance
2.7
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.