CVSS3
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS
Percentile
5.1%
Insufficient input validation in
CpmDisplayFeatureSmm may allow an attacker to corrupt SMM memory by overwriting
an arbitrary bit in an attacker-controlled pointer potentially leading to
arbitrary code execution in SMM.
Vendor | Product | Version | CPE |
---|---|---|---|
amd | ryzen_3_3300_firmware | * | cpe:2.3:o:amd:ryzen_3_3300_firmware:*:*:*:*:*:*:*:* |
amd | ryzen_3_3300 | - | cpe:2.3:h:amd:ryzen_3_3300:-:*:*:*:*:*:*:* |
amd | ryzen_3_3300x_firmware | * | cpe:2.3:o:amd:ryzen_3_3300x_firmware:*:*:*:*:*:*:*:* |
amd | ryzen_3_3300x | - | cpe:2.3:h:amd:ryzen_3_3300x:-:*:*:*:*:*:*:* |
amd | ryzen_5_3600_firmware | * | cpe:2.3:o:amd:ryzen_5_3600_firmware:*:*:*:*:*:*:*:* |
amd | ryzen_5_3600 | - | cpe:2.3:h:amd:ryzen_5_3600:-:*:*:*:*:*:*:* |
amd | ryzen_5_3600x_firmware | * | cpe:2.3:o:amd:ryzen_5_3600x_firmware:*:*:*:*:*:*:*:* |
amd | ryzen_5_3600x | - | cpe:2.3:h:amd:ryzen_5_3600x:-:*:*:*:*:*:*:* |
amd | ryzen_7_3700_firmware | * | cpe:2.3:o:amd:ryzen_7_3700_firmware:*:*:*:*:*:*:*:* |
amd | ryzen_7_3700 | - | cpe:2.3:h:amd:ryzen_7_3700:-:*:*:*:*:*:*:* |
[
{
"defaultStatus": "affected",
"packageName": "AGESA",
"platforms": [
"x86"
],
"product": "Ryzen™ 3000 Series Desktop Processors “Matisse” AM4",
"vendor": "AMD",
"versions": [
{
"status": "affected",
"version": "various "
}
]
},
{
"defaultStatus": "affected",
"packageName": "AGESA",
"platforms": [
"x86"
],
"product": "Ryzen™ 5000 Series Desktop Processors “Vermeer” AM4",
"vendor": "AMD",
"versions": [
{
"status": "affected",
"version": "various "
}
]
},
{
"defaultStatus": "affected",
"packageName": "AGESA",
"platforms": [
"x86"
],
"product": "Ryzen™ 5000 Series Desktop Processor with Radeon™ Graphics “Cezanne” AM4",
"vendor": "AMD",
"versions": [
{
"status": "affected",
"version": "various "
}
]
},
{
"defaultStatus": "affected",
"packageName": "AGESA",
"platforms": [
"x86"
],
"product": "Ryzen™ 7000 Series Processors “Raphael”",
"vendor": "AMD",
"versions": [
{
"status": "affected",
"version": "various "
}
]
},
{
"defaultStatus": "affected",
"packageName": "AGESA",
"platforms": [
"x86"
],
"product": "Athlon™ 3000 Series Desktop Processors with Radeon™ Graphics “Picasso”",
"vendor": "AMD",
"versions": [
{
"status": "affected",
"version": "various "
}
]
},
{
"defaultStatus": "affected",
"packageName": "AGESA",
"platforms": [
"x86"
],
"product": "Ryzen™ 4000 Series Desktop Processors with Radeon™ Graphics “Renoir” FP5",
"vendor": "AMD",
"versions": [
{
"status": "affected",
"version": "various "
}
]
},
{
"defaultStatus": "affected",
"packageName": "AGESA",
"platforms": [
"x86"
],
"product": "Athlon™ 3000 Series Mobile Processors with Radeon™ Graphics “Dali”/”Dali” FP5",
"vendor": "AMD",
"versions": [
{
"status": "affected",
"version": "various "
}
]
},
{
"defaultStatus": "affected",
"packageName": "AGESA",
"platforms": [
"x86"
],
"product": "Athlon™ 3000 Series Mobile Processors with Radeon™ Graphics “Pollock”",
"vendor": "AMD",
"versions": [
{
"status": "affected",
"version": "various "
}
]
},
{
"defaultStatus": "affected",
"packageName": "AGESA",
"platforms": [
"x86"
],
"product": "Ryzen™ 3000 Series Mobile Processors with Radeon™ Graphics “Picasso”",
"vendor": "AMD",
"versions": [
{
"status": "affected",
"version": "various "
}
]
},
{
"defaultStatus": "affected",
"packageName": "AGESA",
"platforms": [
"x86"
],
"product": "Ryzen™ 4000 Series Mobile Processors with Radeon™ Graphics “Renoir” FP6",
"vendor": "AMD",
"versions": [
{
"status": "affected",
"version": "various "
}
]
},
{
"defaultStatus": "affected",
"packageName": "AGESA",
"platforms": [
"x86"
],
"product": "Ryzen™ 5000 Series Mobile Processors with Radeon™ Graphics “Lucienne”",
"vendor": "AMD",
"versions": [
{
"status": "affected",
"version": "various "
}
]
},
{
"defaultStatus": "affected",
"packageName": "AGESA",
"platforms": [
"x86"
],
"product": "Ryzen™ 5000 Series Mobile Processors with Radeon™ Graphics “Cezanne”",
"vendor": "AMD",
"versions": [
{
"status": "affected",
"version": "various "
}
]
},
{
"defaultStatus": "affected",
"packageName": "AGESA",
"platforms": [
"x86"
],
"product": "Ryzen™ 6000 Series Mobile Processors \"Rembrandt\"",
"vendor": "AMD",
"versions": [
{
"status": "affected",
"version": "various "
}
]
},
{
"defaultStatus": "affected",
"packageName": "AGESA",
"platforms": [
"x86"
],
"product": "Ryzen™ 7030 Series Mobile Processors “Barcelo” ",
"vendor": "AMD",
"versions": [
{
"status": "affected",
"version": "various "
}
]
},
{
"defaultStatus": "affected",
"packageName": "AGESA",
"platforms": [
"x86"
],
"product": "Ryzen™ 7020 Series Mobile Processors “Mendocino”",
"vendor": "AMD",
"versions": [
{
"status": "affected",
"version": "various "
}
]
}
]