Vulnerabilities > AMD > Epyc 9254 Firmware > High

DATE CVE VULNERABILITY TITLE RISK
2024-08-05 CVE-2024-21978 Unspecified vulnerability in AMD products
Improper input validation in SEV-SNP could allow a malicious hypervisor to read or overwrite guest memory potentially leading to data leakage or data corruption.
local
low complexity
amd
7.9
2024-08-05 CVE-2024-21980 Out-of-bounds Write vulnerability in AMD products
Improper restriction of write operations in SNP firmware could allow a malicious hypervisor to potentially overwrite a guest's memory or UMC seed resulting in loss of confidentiality and integrity.
local
low complexity
amd CWE-787
7.9
2023-11-14 CVE-2021-46774 Unspecified vulnerability in AMD products
Insufficient DRAM address validation in System Management Unit (SMU) may allow an attacker to read/write from/to an invalid DRAM address, potentially resulting in denial-of-service.
network
low complexity
amd
7.5
2023-11-14 CVE-2023-20566 Unspecified vulnerability in AMD products
Improper address validation in ASP with SNP enabled may potentially allow an attacker to compromise guest memory integrity.
network
low complexity
amd
7.5