Improper input validation in the AMD OverDrive (AOD) System Management Mode (SMM) module could allow a privileged attacker to perform an out-of-bounds read, potentially resulting in loss of confidentiality.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
| AMD | AMD EPYC™ 4004 | Range not provided by sourceCNA affecteddefault affected | |
| AMD | AMD EPYC™ 4005 | Range not provided by sourceCNA affecteddefault affected | |
| AMD | AMD Ryzen™ 6000 Series Processors With Radeon™ Graphics | Range not provided by sourceCNA affecteddefault affected | |
| AMD | AMD Ryzen™ 7000 Series Desktop Processors | Range not provided by sourceCNA affecteddefault affected | |
| AMD | AMD Ryzen™ 7040 Series Mobile Processors With Radeon™ Graphics | Range not provided by sourceCNA affecteddefault affected |
CVSS version used by this source: 4.0
CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.