CVE-2023-31316
HIGH
7,1
Source: [email protected]
Attack Vector: local
Attack Complexity: high
Privileges Required: low
User Interaction: none
Confidentiality: N/A
Integrity: N/A
Availability: N/A
Description
AI Translation Available
Improperly preserved integrity of hardware configuration state during a power save/restore operation in the AMD Secure Processor (ASP) could allow an attacker with the ability to write outside the trusted memory range (TMR) to change the execution flow of the Video Core Next (VCN) firmware potentially impacting confidentiality, integrity, or availability.
EPSS (Exploit Prediction Scoring System)
Trend Analysis
EPSS (Exploit Prediction Scoring System)
Prevede la probabilità di sfruttamento basata su intelligence sulle minacce e sulle caratteristiche della vulnerabilità.
EPSS Score
0,0001
Percentile
0,0th
Updated
EPSS Score Trend (Last 6 Days)
1304
Improperly Preserved Integrity of Hardware Configuration State During a Power Save/Restore Operation
DraftCommon Consequences
Security Scopes Affected:
Confidentiality
Integrity
Potential Impacts:
Dos: Instability
Dos: Crash, Exit, Or Restart
Dos: Resource Consumption (Other)
Gain Privileges Or Assume Identity
Bypass Protection Mechanism
Alter Execution Logic
Quality Degradation
Unexpected State
Reduce Maintainability
Reduce Performance
Reduce Reliability
Applicable Platforms
All platforms may be affected
https://www.amd.com/en/resources/product-security/bulletin/AMD-SB-4017.html
https://www.amd.com/en/resources/product-security/bulletin/AMD-SB-6027.html