Description
Improper access control in the fTPM driver in the trusted OS could allow a privileged attacker to corrupt system memory, potentially leading to loss of integrity, confidentiality, or availability.
CVSS breakdown
CVSS 3.1
Attack Vector
Local
Attack Complexity
Low
Privileges Required
High
User Interaction
None
Scope
Changed
Confidentiality
Low
Integrity
Low
Availability
Low
Affected products
- AMD / AMD Athlon™ 3000 Series Desktop Processors with Radeon™ GraphicsComboAM4v2PI 1.2.0.CA – ComboAM4v2PI 1.2.0.CA
- AMD / AMD Athlon™ 3000 Series Desktop Processors with Radeon™ GraphicsComboAM4PI 1.0.0.B – ComboAM4PI 1.0.0.B
- AMD / AMD Athlon™ 3000 Series Mobile Processors with Radeon™ GraphicsPollock-FT5 1.0.0.7 – Pollock-FT5 1.0.0.7
- AMD / AMD Ryzen™ 3000 Series Desktop ProcessorsComboAM4v2PI 1.2.0.CA – ComboAM4v2PI 1.2.0.CA
- AMD / AMD Ryzen™ 3000 Series Mobile Processor with Radeon™ GraphicsPicasso-FP5 1.0.1.1 – Picasso-FP5 1.0.1.1
- AMD / AMD Ryzen™ 4000 Series Desktop Processor with Radeon™ GraphicsComboAM4v2PI 1.2.0.CA – ComboAM4v2PI 1.2.0.CA
- AMD / AMD Ryzen™ 4000 Series Mobile Processors with Radeon™ GraphicsRenoirPI-FP6 1.0.0.D – RenoirPI-FP6 1.0.0.D
- AMD / AMD Ryzen™ 5000 Series Desktop ProcessorsComboAM4v2PI 1.2.0.CA – ComboAM4v2PI 1.2.0.CA
- AMD / AMD Ryzen™ 5000 Series Desktop Processor with Radeon™ GraphicsComboAM4v2PI 1.2.0.CA – ComboAM4v2PI 1.2.0.CA
- AMD / AMD Ryzen™ 5000 Series Processors with Radeon™ GraphicsCezanne-FP6 1.0.1.0 – Cezanne-FP6 1.0.1.0
- AMD / AMD Ryzen™ 6000 Series Processor with Radeon™ GraphicsRembrandtPI-FP7 1.0.0.9b – RembrandtPI-FP7 1.0.0.9b
- AMD / AMD Ryzen™ 7000 Series Desktop ProcessorsComboAM5 1.0.8.0 – ComboAM5 1.0.8.0
- AMD / AMD Ryzen™ 7000 Series Mobile ProcessorsDragonRangeFL1PI 1.0.0.3b – DragonRangeFL1PI 1.0.0.3b
- AMD / AMD Ryzen™ 7020 Series Processors with Radeon™ GraphicsMendocinoPI-FT6 1.0.0.6 – MendocinoPI-FT6 1.0.0.6
- AMD / AMD Ryzen™ 7035 Series Processor with Radeon™ GraphicsRembrandtPI-FP7 1.0.0.9b – RembrandtPI-FP7 1.0.0.9b
- AMD / AMD Ryzen™ 7040 Series Processors with Radeon™ GraphicsPhoenixPI-FP8-FP7 1.0.8.0 – PhoenixPI-FP8-FP7 1.0.8.0
- AMD / AMD Ryzen™ 8000 Series Processor with Radeon™ GraphicsComboAM5 1.0.8.0 – ComboAM5 1.0.8.0
- AMD / AMD Ryzen™ Embedded 5000EmbAM4PI 1.0.0.5 – EmbAM4PI 1.0.0.5
- AMD / AMD Ryzen™ Embedded 7000EmbeddedAM5PI 1.0.0.0 – EmbeddedAM5PI 1.0.0.0
- AMD / AMD Ryzen™ Embedded R1000EmbeddedPI-FP5 1.2.0.C – EmbeddedPI-FP5 1.2.0.C
- AMD / AMD Ryzen™ Embedded R2000EmbeddedR2KPI-FP5 1.0.0.3 – EmbeddedR2KPI-FP5 1.0.0.3
- AMD / AMD Ryzen™ Embedded V1000No Fix Planned – No Fix Planned
- AMD / AMD Ryzen™Embedded V2000EmbeddedPI-FP6 1.0.0.9 – EmbeddedPI-FP6 1.0.0.9
- AMD / AMD Ryzen™Embedded V3000Embedded-PIFP7r2 1.0.0.8 – Embedded-PIFP7r2 1.0.0.8
- AMD / AMD Ryzen™ Threadripper™ 3000 Series ProcessorsCastlePeakPI-SP3r3 1.0.0.C – CastlePeakPI-SP3r3 1.0.0.C
- AMD / AMD Ryzen™ Threadripper™ PRO 3000WX Series ProcessorsChagallWSPI-sWRX8 1.0.0.9 – ChagallWSPI-sWRX8 1.0.0.9
- AMD / AMD Ryzen™ Threadripper™ PRO 3000WX Series ProcessorsCastlePeakWSPI-sWRX8 1.0.0.E – CastlePeakWSPI-sWRX8 1.0.0.E
- AMD / AMD Ryzen™ Threadripper™ PRO 5000WX- Series Desktop ProcessorsChagallWSPI-sWRX8 1.0.0.7 – ChagallWSPI-sWRX8 1.0.0.7