Vulnerability Database

289,599

Total vulnerabilities in the database

CVE-2023-20521

TOCTOU in the ASP Bootloader may allow an attacker with physical access to tamper with SPI ROM records after memory content verification, potentially leading to loss of confidentiality or a denial of service.

  • Published: Nov 14, 2023
  • Updated: Jun 19, 2024
  • CVE: CVE-2023-20521
  • Severity: Medium
  • Exploit:

CVSS v3:

  • Severity: Medium
  • Score: 5.7
  • AV:P/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:H

CWEs:

Software From Fixed in
amd / epyc_7001_firmware - naplespi_1.0.0.h
amd / epyc_7251_firmware - naplespi_1.0.0.h
amd / epyc_7261_firmware - naplespi_1.0.0.h
amd / epyc_7281_firmware - naplespi_1.0.0.h
amd / epyc_7301_firmware - naplespi_1.0.0.h
amd / epyc_7351_firmware - naplespi_1.0.0.h
amd / epyc_7351p_firmware - naplespi_1.0.0.h
amd / epyc_7371_firmware - naplespi_1.0.0.h
amd / epyc_7401_firmware - naplespi_1.0.0.h
amd / epyc_7401p_firmware - naplespi_1.0.0.h
amd / epyc_7451_firmware - naplespi_1.0.0.h
amd / epyc_7501_firmware - naplespi_1.0.0.h
amd / epyc_7551_firmware - naplespi_1.0.0.h
amd / epyc_7551p_firmware - naplespi_1.0.0.h
amd / epyc_7601_firmware - naplespi_1.0.0.h
amd / epyc_7232p_firmware - romepi_1.0.0.d
amd / epyc_7252_firmware - romepi_1.0.0.d
amd / epyc_7262_firmware - romepi_1.0.0.d
amd / epyc_7272_firmware - romepi_1.0.0.d
amd / epyc_7282_firmware - romepi_1.0.0.d
amd / epyc_7302_firmware - romepi_1.0.0.d
amd / epyc_7302p_firmware - romepi_1.0.0.d
amd / epyc_7352_firmware - romepi_1.0.0.d
amd / epyc_7402_firmware - romepi_1.0.0.d
amd / epyc_7402p_firmware - romepi_1.0.0.d
amd / epyc_7452_firmware - romepi_1.0.0.d
amd / epyc_7502_firmware - romepi_1.0.0.d
amd / epyc_7502p_firmware - romepi_1.0.0.d
amd / epyc_7532_firmware - romepi_1.0.0.d
amd / epyc_7542_firmware - romepi_1.0.0.d
amd / epyc_7552_firmware - romepi_1.0.0.d
amd / epyc_7642_firmware - romepi_1.0.0.d
amd / epyc_7662_firmware - romepi_1.0.0.d
amd / epyc_7702_firmware - romepi_1.0.0.d
amd / epyc_7702p_firmware - romepi_1.0.0.d
amd / epyc_7742_firmware - romepi_1.0.0.d
amd / epyc_7f32_firmware - romepi_1.0.0.d
amd / epyc_7f52_firmware - romepi_1.0.0.d
amd / epyc_7f72_firmware - romepi_1.0.0.d
amd / epyc_7h12_firmware - romepi_1.0.0.d
amd / epyc_7763_firmware - milanpi_1.0.0.7
amd / epyc_7713p_firmware - milanpi_1.0.0.7
amd / epyc_7713_firmware - milanpi_1.0.0.7
amd / epyc_7663p_firmware - milanpi_1.0.0.7
amd / epyc_7663_firmware - milanpi_1.0.0.7
amd / epyc_7643p_firmware - milanpi_1.0.0.7
amd / epyc_7773x_firmware - milanpi_1.0.0.7
amd / epyc_7643_firmware - milanpi_1.0.0.7
amd / epyc_7573x_firmware - milanpi_1.0.0.7
amd / epyc_75f3_firmware - milanpi_1.0.0.7
amd / epyc_7543p_firmware - milanpi_1.0.0.7
amd / epyc_7543_firmware - milanpi_1.0.0.7
amd / epyc_7513_firmware - milanpi_1.0.0.7
amd / epyc_7473x_firmware - milanpi_1.0.0.7
amd / epyc_7453_firmware - milanpi_1.0.0.7
amd / epyc_74f3_firmware - milanpi_1.0.0.7
amd / epyc_7443p_firmware - milanpi_1.0.0.7
amd / epyc_7443_firmware - milanpi_1.0.0.7
amd / epyc_7413_firmware - milanpi_1.0.0.7
amd / epyc_7373x_firmware - milanpi_1.0.0.7
amd / epyc_73f3_firmware - milanpi_1.0.0.7
amd / epyc_7343_firmware - milanpi_1.0.0.7
amd / epyc_7313p_firmware - milanpi_1.0.0.7
amd / epyc_7313_firmware - milanpi_1.0.0.7
amd / epyc_7303p_firmware - milanpi_1.0.0.7
amd / epyc_7303_firmware - milanpi_1.0.0.7
amd / epyc_72f3_firmware - milanpi_1.0.0.7
amd / epyc_7203p_firmware - milanpi_1.0.0.7
amd / epyc_7203_firmware - milanpi_1.0.0.7
amd / ryzen_threadripper_2990wx_firmware - summitpi-sp3r2_1.1.0.6
amd / ryzen_threadripper_2970wx_firmware - summitpi-sp3r2_1.1.0.6
amd / ryzen_threadripper_2950x_firmware - summitpi-sp3r2_1.1.0.6
amd / ryzen_threadripper_2920x_firmware - summitpi-sp3r2_1.1.0.6
amd / ryzen_7_3780u_firmware - picassopi-fp5_1.0.0.e
amd / ryzen_7_3750h_firmware - picassopi-fp5_1.0.0.e
amd / ryzen_7_3700c_firmware - picassopi-fp5_1.0.0.e
amd / ryzen_7_3700u_firmware - picassopi-fp5_1.0.0.e
amd / ryzen_5_3580u_firmware - picassopi-fp5_1.0.0.e
amd / ryzen_5_3550h_firmware - picassopi-fp5_1.0.0.e
amd / ryzen_5_3500c_firmware - picassopi-fp5_1.0.0.e
amd / ryzen_5_3500u_firmware - picassopi-fp5_1.0.0.e
amd / ryzen_5_3450u_firmware - picassopi-fp5_1.0.0.e
amd / ryzen_3_3350u_firmware - picassopi-fp5_1.0.0.e
amd / ryzen_3_3300u_firmware - picassopi-fp5_1.0.0.e
amd / ryzen_3_3250u_firmware - picassopi-fp5_1.0.0.e
amd / ryzen_3_3250c_firmware - picassopi-fp5_1.0.0.e
amd / ryzen_3_3200u_firmware - picassopi-fp5_1.0.0.e
amd / amd_3015e_firmware - pollockpi-ft5_1.0.0.4
amd / amd_3015ce_firmware - pollockpi-ft5_1.0.0.4