PT-2023-1366 · Amd · Amd Bios

Published

2023-01-10

·

Updated

2023-01-20

·

CVE-2023-20530

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions AMD BIOS (affected versions not specified)
Description The issue is related to insufficient input validation of BIOS mailbox messages in SMU, which may result in out-of-bounds memory reads, potentially leading to a denial of service. This can be exploited by a remote attacker to cause a service disruption.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Weakness Enumeration

Related Identifiers

BDU:2023-00703
CVE-2023-20530

Affected Products

Amd Bios