CVE-2023-20589

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
08/08/2023
Last modified:
22/08/2023

Description

<br /> An attacker with specialized hardware and physical access to an impacted device may be able to perform a voltage fault injection attack resulting in compromise of the ASP secure boot potentially leading to arbitrary code execution. <br /> <br /> <br /> <br /> <br /> <br /> <br /> <br /> <br /> <br /> <br /> <br /> <br /> <br /> <br /> <br /> <br /> <br />

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:amd:ryzen_5_pro_3400g_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:ryzen_5_pro_3400g:-:*:*:*:*:*:*:*
cpe:2.3:o:amd:ryzen_5_3400g_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:ryzen_5_3400g:-:*:*:*:*:*:*:*
cpe:2.3:o:amd:ryzen_5_pro_3400ge_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:ryzen_5_pro_3400ge:-:*:*:*:*:*:*:*
cpe:2.3:o:amd:ryzen_5_pro_3350g_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:ryzen_5_pro_3350g:-:*:*:*:*:*:*:*
cpe:2.3:o:amd:ryzen_5_pro_3350ge_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:ryzen_5_pro_3350ge:-:*:*:*:*:*:*:*
cpe:2.3:o:amd:ryzen_3_pro_3200g_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:ryzen_3_pro_3200g:-:*:*:*:*:*:*:*
cpe:2.3:o:amd:ryzen_3_3200g_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:ryzen_3_3200g:-:*:*:*:*:*:*:*
cpe:2.3:o:amd:ryzen_3_3200ge_firmware:-:*:*:*:*:*:*:*