CVE-2024-36354
CVE-2024-36354
Improper input validation for DIMM serial presence detect (SPD) metadata could allow an attacker with physical access, ring0 access on a system with a non-compliant DIMM, or control over the Root of Trust for BIOS update, to bypass SMM isolation potentially resulting in arbitrary code execution at the SMM level.
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H
Productos afectados
AMD · AMD Athlon™ 3000 Series Desktop Processors with Radeon™ GraphicsAMD · AMD Athlon™ 3000 Series Mobile Processors with Radeon™ GraphicsAMD · AMD EPYC™ 4004 Series ProcessorsAMD · AMD EPYC™ 7001 Series ProcessorsAMD · AMD EPYC™ 7002 Series ProcessorsAMD · AMD EPYC™ 7003 Series ProcessorsAMD · AMD EPYC™ 8004 Series ProcessorsAMD · AMD EPYC™ 9004 Series ProcessorsAMD · AMD EPYC™ Embedded 3000 Series ProcessorsAMD · AMD EPYC™ Embedded 7002 Series ProcessorsAMD · AMD EPYC™ Embedded 7003 Series ProcessorsAMD · AMD EPYC™ Embedded 9004 Series ProcessorsAMD · AMD EPYC™ Embedded 97X4 Series ProcessorsAMD · AMD Ryzen™ 3000 Series Desktop ProcessorsAMD · AMD Ryzen™ 3000 Series Mobile Processors with Radeon™ GraphicsAMD · AMD Ryzen™ 4000 Series Desktop ProcessorsAMD · AMD Ryzen™ 4000 Series Mobile Processors with Radeon™ GraphicsAMD · AMD Ryzen™ 5000 Series Desktop ProcessorsAMD · AMD Ryzen™ 5000 Series Desktop Processors with Radeon™ GraphicsAMD · AMD Ryzen™ 5000 Series Mobile Processors with Radeon™ GraphicsAMD · AMD Ryzen™ 6000 Series Processors with Radeon™ GraphicsAMD · AMD Ryzen™ 7000 Series Desktop ProcessorsAMD · AMD Ryzen™ 7030 Series Mobile Processors with Radeon™ GraphicsAMD · AMD Ryzen™ 7035 Series Processors with Radeon™ GraphicsAMD · AMD Ryzen™ 7040 Series Mobile Processors with Radeon™ GraphicsAMD · AMD Ryzen™ 7045 Series Mobile Processors with Radeon™ GraphicsAMD · AMD Ryzen™ 8000 Series Desktop ProcessorsAMD · AMD Ryzen™ 8040 Series Mobile Processors with Radeon™ GraphicsAMD · AMD Ryzen™ 9000 Series Desktop ProcessorsAMD · AMD Ryzen™ Embedded 5000 Series ProcessorsAMD · AMD Ryzen™ Embedded 7000 Series ProcessorsAMD · AMD Ryzen™ Embedded V2000 Series ProcessorsAMD · AMD Ryzen™ Embedded V3000 Series ProcessorsAMD · AMD Ryzen™ Threadripper™ 3000 ProcessorsAMD · AMD Ryzen™ Threadripper™ PRO 3000 WX-Series ProcessorsAMD · AMD Ryzen™ Threadripper™ PRO 5000 WX-Series Processors¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →