Vulnerabilities > Amperecomputing > High

DATE CVE VULNERABILITY TITLE RISK
2022-08-17 CVE-2021-45454 Unspecified vulnerability in Amperecomputing Ampere Altra Firmware and Ampere Altra MAX Firmware
Ampere Altra before SRP 1.08b and Altra Max? before SRP 2.05 allow information disclosure of power telemetry via HWmon.
network
low complexity
amperecomputing
7.5
2022-08-17 CVE-2022-37459 Information Exposure Through Discrepancy vulnerability in Amperecomputing Ampere Altra Firmware and Ampere Altra MAX Firmware
Ampere Altra devices before 1.08g and Ampere Altra Max devices before 2.05a allow attackers to control the predictions for return addresses and potentially hijack code flow to execute arbitrary code via a side-channel attack, aka a "Retbleed" issue.
local
low complexity
amperecomputing CWE-203
7.8