PT-2018-1086 · Amd · Ryzen Mobile+2

Cfir Cohen

·

Published

2018-03-12

·

Updated

2019-10-03

·

CVE-2018-8931

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions AMD Ryzen, Ryzen Pro, and Ryzen Mobile processor chips (affected versions not specified)
Description The issue is related to insufficient access control for the Secure Processor in AMD Ryzen, Ryzen Pro, and Ryzen Mobile processor chips. This allows an attacker with administrative privileges and access to the targeted computer to write to the protected area of the processor (VTL-1 memory) by writing to the AMD Secure Processor coprocessor registers.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Incorrect Permission

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2018-00467
CVE-2018-8931

Affected Products

Amd Ryzen
Ryzen Mobile
Ryzen Pro