NA - CVE-2023-31307 - Improper validation of array index in Power...
Improper validation of array index in Power Management Firmware (PMFW) may allow a privileged attacker to cause an out-of-bounds memory read within PMFW, potentially leading to a denial of service.
NA - CVE-2023-31310 - Improper input validation in Power Management...
Improper input validation in Power Management Firmware (PMFW) may allow an attacker with privileges to send a malformed input for the "set temperature input selection" command, potentially...
NA - CVE-2023-31339 - Improper input validation in ARM® Trusted...
Improper input validation in ARM® Trusted Firmware used in AMD’s Zynq™ UltraScale+™) MPSoC/RFSoC may allow a privileged attacker to perform out of bound reads, potentially resulting in data leakage...
NA - CVE-2023-31341 - Insufficient
validation of the Input Output...
Insufficient validation of the Input Output Control (IOCTL) input buffer in AMD µProf may allow an authenticated attacker to cause an out-of-bounds write, potentially causing a Windows® OS crash,...
NA - CVE-2023-31349 - Incorrect default permissions in the AMD µProf...
Incorrect default permissions in the AMD µProf installation directory could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution.
NA - CVE-2023-31356 - Incomplete system memory cleanup in SEV...
Incomplete system memory cleanup in SEV firmware could allow a privileged attacker to corrupt guest private memory, potentially resulting in a loss of data integrity.
NA - CVE-2024-21981 - Improper key usage control in AMD Secure...
Improper key usage control in AMD Secure Processor (ASP) may allow an attacker with local access who has gained arbitrary code execution privilege in ASP to extract ASP cryptographic keys,...
NA - CVE-2024-36446 - The provisioning manager component of Mitel...
The provisioning manager component of Mitel MiVoice MX-ONE through 7.6 SP1 could allow an authenticated attacker to conduct an authentication bypass attack due to improper access control. A...