PT-2023-8274 · Amd+1 · Amd Asp Handler+1

Published

2023-11-14

·

Updated

2024-07-09

·

CVE-2023-20566

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:C/A:N
Name of the Vulnerable Software and Affected Versions AMD ASP Handler (affected versions not specified)
Description The issue is related to improper address validation in ASP with SNP enabled, which may allow an attacker to compromise guest memory integrity. It is also described as a buffer overflow vulnerability in the ASP Handler component of AMD microprogram software, potentially enabling a remote attacker to execute arbitrary code.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Buffer Overflow

Weakness Enumeration

Related Identifiers

BDU:2024-00344
CVE-2023-20566
SUSE-SU-2023:4654-1
SUSE-SU-2023:4655-1
SUSE-SU-2023:4660-1
SUSE-SU-2023:4664-1
SUSE-SU-2023:4665-1
SUSE-SU-2024:2376-1

Affected Products

Amd Asp Handler
Suse