Vulnerabilities > AMD > Ryzen 5 6600Hs Firmware > High

DATE CVE VULNERABILITY TITLE RISK
2023-11-14 CVE-2023-20563 Improper Privilege Management vulnerability in AMD products
Insufficient protections in System Management Mode (SMM) code may allow an attacker to potentially enable escalation of privilege via local access.
local
low complexity
amd CWE-269
7.8
2023-11-14 CVE-2023-20565 Improper Privilege Management vulnerability in AMD products
Insufficient protections in System Management Mode (SMM) code may allow an attacker to potentially enable escalation of privilege via local access.
local
low complexity
amd CWE-269
7.8
2023-11-14 CVE-2023-20571 Race Condition vulnerability in AMD products
A race condition in System Management Mode (SMM) code may allow an attacker using a compromised user space to leverage CVE-2018-8897 potentially resulting in privilege escalation.
network
high complexity
amd CWE-362
8.1
2023-08-08 CVE-2023-20555 Out-of-bounds Write vulnerability in AMD products
Insufficient input validation in CpmDisplayFeatureSmm may allow an attacker to corrupt SMM memory by overwriting an arbitrary bit in an attacker-controlled pointer potentially leading to arbitrary code execution in SMM.
local
low complexity
amd CWE-787
7.8
2023-05-09 CVE-2021-26365 Out-of-bounds Read vulnerability in AMD products
Certain size values in firmware binary headers could trigger out of bounds reads during signature validation, leading to denial of service or potentially limited leakage of information about out-of-bounds memory contents.
network
low complexity
amd CWE-125
8.2