Vulnerabilities > AMD > Epyc Server Firmware

DATE CVE VULNERABILITY TITLE RISK
2018-03-22 CVE-2018-8936 Unspecified vulnerability in AMD products
The AMD EPYC Server, Ryzen, Ryzen Pro, and Ryzen Mobile processor chips allow Platform Security Processor (PSP) privilege escalation.
network
high complexity
amd
critical
9.0
2018-03-22 CVE-2018-8933 Incorrect Permission Assignment for Critical Resource vulnerability in AMD Epyc Server Firmware
The AMD EPYC Server processor chips have insufficient access control for protected memory regions, aka FALLOUT-1, FALLOUT-2, and FALLOUT-3.
network
high complexity
amd CWE-732
critical
9.0
2018-03-22 CVE-2018-8930 Unspecified vulnerability in AMD products
The AMD EPYC Server, Ryzen, Ryzen Pro, and Ryzen Mobile processor chips have insufficient enforcement of Hardware Validated Boot, aka MASTERKEY-1, MASTERKEY-2, and MASTERKEY-3.
network
high complexity
amd
critical
9.0