Bootloader may allow an attacker to corrupt the return address causing a
stack-based buffer overrun potentially leading to arbitrary code execution.
Metrics
No CVSS v4.0
Attack Vector Network
Attack Complexity Low
Privileges Required None
Scope Unchanged
Confidentiality Impact High
Integrity Impact High
Availability Impact High
User Interaction None
No CVSS v3.0
No CVSS v2
This CVE is not in the KEV list.
The EPSS score is 0.00312.
Exploitation none
Automatable yes
Technical Impact total
Affected Vendors & Products
| Vendors | Products |
|---|---|
|
Amd
Subscribe
|
Epyc 7232p
Subscribe
Epyc 7232p Firmware
Subscribe
Epyc 7251
Subscribe
Epyc 7251 Firmware
Subscribe
Epyc 7252
Subscribe
Epyc 7252 Firmware
Subscribe
Epyc 7261
Subscribe
Epyc 7261 Firmware
Subscribe
Epyc 7262
Subscribe
Epyc 7262 Firmware
Subscribe
Epyc 7272
Subscribe
Epyc 7272 Firmware
Subscribe
Epyc 7281
Subscribe
Epyc 7281 Firmware
Subscribe
Epyc 7282
Subscribe
Epyc 7282 Firmware
Subscribe
Epyc 72f3
Subscribe
Epyc 72f3 Firmware
Subscribe
Epyc 7301
Subscribe
Epyc 7301 Firmware
Subscribe
Epyc 7302
Subscribe
Epyc 7302 Firmware
Subscribe
Epyc 7302p
Subscribe
Epyc 7302p Firmware
Subscribe
Epyc 7313
Subscribe
Epyc 7313 Firmware
Subscribe
Epyc 7313p
Subscribe
Epyc 7313p Firmware
Subscribe
Epyc 7343
Subscribe
Epyc 7343 Firmware
Subscribe
Epyc 7351
Subscribe
Epyc 7351 Firmware
Subscribe
Epyc 7351p
Subscribe
Epyc 7351p Firmware
Subscribe
Epyc 7352
Subscribe
Epyc 7352 Firmware
Subscribe
Epyc 7371
Subscribe
Epyc 7371 Firmware
Subscribe
Epyc 7373x
Subscribe
Epyc 7373x Firmware
Subscribe
Epyc 73f3
Subscribe
Epyc 73f3 Firmware
Subscribe
Epyc 7401
Subscribe
Epyc 7401 Firmware
Subscribe
Epyc 7401p
Subscribe
Epyc 7401p Firmware
Subscribe
Epyc 7402
Subscribe
Epyc 7402 Firmware
Subscribe
Epyc 7402p
Subscribe
Epyc 7402p Firmware
Subscribe
Epyc 7413
Subscribe
Epyc 7413 Firmware
Subscribe
Epyc 7443
Subscribe
Epyc 7443 Firmware
Subscribe
Epyc 7443p
Subscribe
Epyc 7443p Firmware
Subscribe
Epyc 7451
Subscribe
Epyc 7451 Firmware
Subscribe
Epyc 7452
Subscribe
Epyc 7452 Firmware
Subscribe
Epyc 7453
Subscribe
Epyc 7453 Firmware
Subscribe
Epyc 7473x
Subscribe
Epyc 7473x Firmware
Subscribe
Epyc 74f3
Subscribe
Epyc 74f3 Firmware
Subscribe
Epyc 7501
Subscribe
Epyc 7501 Firmware
Subscribe
Epyc 7502
Subscribe
Epyc 7502 Firmware
Subscribe
Epyc 7502p
Subscribe
Epyc 7502p Firmware
Subscribe
Epyc 7513
Subscribe
Epyc 7513 Firmware
Subscribe
Epyc 7532
Subscribe
Epyc 7532 Firmware
Subscribe
Epyc 7542
Subscribe
Epyc 7542 Firmware
Subscribe
Epyc 7543
Subscribe
Epyc 7543 Firmware
Subscribe
Epyc 7543p
Subscribe
Epyc 7543p Firmware
Subscribe
Epyc 7551
Subscribe
Epyc 7551 Firmware
Subscribe
Epyc 7551p
Subscribe
Epyc 7551p Firmware
Subscribe
Epyc 7552
Subscribe
Epyc 7552 Firmware
Subscribe
Epyc 7571
Subscribe
Epyc 7571 Firmware
Subscribe
Epyc 7573x
Subscribe
Epyc 7573x Firmware
Subscribe
Epyc 75f3
Subscribe
Epyc 75f3 Firmware
Subscribe
Epyc 7601
Subscribe
Epyc 7601 Firmware
Subscribe
Epyc 7642
Subscribe
Epyc 7642 Firmware
Subscribe
Epyc 7643
Subscribe
Epyc 7643 Firmware
Subscribe
Epyc 7662
Subscribe
Epyc 7662 Firmware
Subscribe
Epyc 7663
Subscribe
Epyc 7663 Firmware
Subscribe
Epyc 7702
Subscribe
Epyc 7702 Firmware
Subscribe
Epyc 7702p
Subscribe
Epyc 7702p Firmware
Subscribe
Epyc 7713
Subscribe
Epyc 7713 Firmware
Subscribe
Epyc 7713p
Subscribe
Epyc 7713p Firmware
Subscribe
Epyc 7742
Subscribe
Epyc 7742 Firmware
Subscribe
Epyc 7763
Subscribe
Epyc 7763 Firmware
Subscribe
Epyc 7773x
Subscribe
Epyc 7773x Firmware
Subscribe
Epyc 7f32
Subscribe
Epyc 7f32 Firmware
Subscribe
Epyc 7f52
Subscribe
Epyc 7f52 Firmware
Subscribe
Epyc 7f72
Subscribe
Epyc 7f72 Firmware
Subscribe
Epyc 7h12
Subscribe
Epyc 7h12 Firmware
Subscribe
|
Configuration 1 [-]
| AND |
|
Configuration 2 [-]
| AND |
|
Configuration 3 [-]
| AND |
|
Configuration 4 [-]
| AND |
|
Configuration 5 [-]
| AND |
|
Configuration 6 [-]
| AND |
|
Configuration 7 [-]
| AND |
|
Configuration 8 [-]
| AND |
|
Configuration 9 [-]
| AND |
|
Configuration 10 [-]
| AND |
|
Configuration 11 [-]
| AND |
|
Configuration 12 [-]
| AND |
|
Configuration 13 [-]
| AND |
|
Configuration 14 [-]
| AND |
|
Configuration 15 [-]
| AND |
|
Configuration 16 [-]
| AND |
|
Configuration 17 [-]
| AND |
|
Configuration 18 [-]
| AND |
|
Configuration 19 [-]
| AND |
|
Configuration 20 [-]
| AND |
|
Configuration 21 [-]
| AND |
|
Configuration 22 [-]
| AND |
|
Configuration 23 [-]
| AND |
|
Configuration 24 [-]
| AND |
|
Configuration 25 [-]
| AND |
|
Configuration 26 [-]
| AND |
|
Configuration 27 [-]
| AND |
|
Configuration 28 [-]
| AND |
|
Configuration 29 [-]
| AND |
|
Configuration 30 [-]
| AND |
|
Configuration 31 [-]
| AND |
|
Configuration 32 [-]
| AND |
|
Configuration 33 [-]
| AND |
|
Configuration 34 [-]
| AND |
|
Configuration 35 [-]
| AND |
|
Configuration 36 [-]
| AND |
|
Configuration 37 [-]
| AND |
|
Configuration 38 [-]
| AND |
|
Configuration 39 [-]
| AND |
|
Configuration 40 [-]
| AND |
|
Configuration 41 [-]
| AND |
|
Configuration 42 [-]
| AND |
|
Configuration 43 [-]
| AND |
|
Configuration 44 [-]
| AND |
|
Configuration 45 [-]
| AND |
|
Configuration 46 [-]
| AND |
|
Configuration 47 [-]
| AND |
|
Configuration 48 [-]
| AND |
|
Configuration 49 [-]
| AND |
|
Configuration 50 [-]
| AND |
|
Configuration 51 [-]
| AND |
|
Configuration 52 [-]
| AND |
|
Configuration 53 [-]
| AND |
|
Configuration 54 [-]
| AND |
|
Configuration 55 [-]
| AND |
|
Configuration 56 [-]
| AND |
|
Configuration 57 [-]
| AND |
|
Configuration 58 [-]
| AND |
|
Configuration 59 [-]
| AND |
|
Configuration 60 [-]
| AND |
|
Configuration 61 [-]
| AND |
|
Configuration 62 [-]
| AND |
|
Configuration 63 [-]
| AND |
|
No data.
No data.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-24699 | Improper access control settings in ASP Bootloader may allow an attacker to corrupt the return address causing a stack-based buffer overrun potentially leading to arbitrary code execution. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Tue, 28 Jan 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: AMD
Published:
Updated: 2025-01-28T15:54:22.503Z
Reserved: 2022-10-27T18:53:39.737Z
Link: CVE-2023-20520
Updated: 2024-08-02T09:05:36.261Z
Status : Modified
Published: 2023-05-09T19:15:11.507
Modified: 2025-01-28T16:15:34.843
Link: CVE-2023-20520
No data.
OpenCVE Enrichment
No data.
EUVD