AMD EPYC 7001
cpe:2.3:h:amd:epyc_7001:*:*:*:*:*:*:*, +1 more
A vulnerability exists in an on-chip debug interface of AMD EPYC and Ryzen processors, allowing a privileged attacker to enable the debug interface. This could potentially lead to a compromise of data confidentiality or integrity. The issue arises from improper access control, which could be exploited by an attacker with administrative privileges.
Exploitation of this vulnerability could result in unauthorized access to the debug interface, allowing for potential manipulation or interception of data, thereby compromising data confidentiality or integrity.
Users are advised to update to the latest Platform Initialization (PI) or Secure Encrypted Virtualization (SEV) firmware version. For AMD EPYC processors, the specific update details can be found in the AMD Security Bulletin AMD-SB-3023. AMD Ryzen processors can refer to the AMD Security Bulletin AMD-SB-4013 for update instructions.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.