Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-20579


Improper Access Control in the AMD SPI protection feature may allow a user with Ring0 (kernel mode) privileged access to bypass protections potentially resulting in loss of integrity and availability.


Security Impact Summary

This vulnerability carries a MEDIUM severity rating with a CVSS v3.1 score of 6.0, requiring local system access to exploit with relatively low complexity without requiring user interaction . The vulnerability impacts integrity (unauthorized modifications), and availability (service disruption) for affected systems. Impacting 258 products from amd, from amd, from amd and 255 others, organizations running these solutions should prioritize assessment and patching.

Historical Context

Reported in 2024, this vulnerability emerged during an era marked by increased sophistication in supply chain attacks, cloud infrastructure vulnerabilities, and software-as-a-service (SaaS) security challenges. Security practices during this period emphasized zero-trust architectures, container security, and API protection.


Published

2024-02-13T20:15:52.577

Last Modified

2025-03-14T18:15:25.980

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 6.0 (MEDIUM)

Weaknesses
  • Type: Primary
    NVD-CWE-noinfo
  • Type: Secondary
    CWE-284

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System amd ryzen_7_5700g_firmware < comboam4v2pi_1.2.0.c Yes
Hardware amd ryzen_7_5700g - No
Operating System amd ryzen_7_5700ge_firmware < comboam4v2pi_1.2.0.c Yes
Hardware amd ryzen_7_5700ge - No
Operating System amd ryzen_5_5600g_firmware < comboam4v2pi_1.2.0.c Yes
Hardware amd ryzen_5_5600g - No
Operating System amd ryzen_5_5600gt_firmware < comboam4v2pi_1.2.0.c Yes
Hardware amd ryzen_5_5600gt - No
Operating System amd ryzen_5_5600ge_firmware < comboam4v2pi_1.2.0.c Yes
Hardware amd ryzen_5_5600ge - No
Operating System amd ryzen_5_5500gt_firmware < comboam4v2pi_1.2.0.c Yes
Hardware amd ryzen_5_5500gt - No
Operating System amd ryzen_3_5300g_firmware < comboam4v2pi_1.2.0.c Yes
Hardware amd ryzen_3_5300g - No
Operating System amd ryzen_3_5300ge_firmware < comboam4v2pi_1.2.0.c Yes
Hardware amd ryzen_3_5300ge - No
Operating System amd ryzen_5_7500f_firmware < comboam5_1.0.8.0 Yes
Hardware amd ryzen_5_7500f - No
Operating System amd ryzen_5_pro_7645_firmware < comboam5_1.0.8.0 Yes
Hardware amd ryzen_5_pro_7645 - No
Operating System amd ryzen_5_7600x_firmware < comboam5_1.0.8.0 Yes
Hardware amd ryzen_5_7600x - No
Operating System amd ryzen_5_7600_firmware < comboam5_1.0.8.0 Yes
Hardware amd ryzen_5_7600 - No
Operating System amd ryzen_5_7600x3d_firmware < comboam5_1.0.8.0 Yes
Hardware amd ryzen_5_7600x3d - No
Operating System amd ryzen_7_pro_7745_firmware < comboam5_1.0.8.0 Yes
Hardware amd ryzen_7_pro_7745 - No
Operating System amd ryzen_7_7700_firmware < comboam5_1.0.8.0 Yes
Hardware amd ryzen_7_7700 - No
Operating System amd ryzen_7_7700x_firmware < comboam5_1.0.8.0 Yes
Hardware amd ryzen_7_7700x - No
Operating System amd ryzen_7_7800x3d_firmware < comboam5_1.0.8.0 Yes
Hardware amd ryzen_7_7800x3d - No
Operating System amd ryzen_9_pro_7945_firmware < comboam5_1.0.8.0 Yes
Hardware amd ryzen_9_pro_7945 - No
Operating System amd ryzen_9_7900_firmware < comboam5_1.0.8.0 Yes
Hardware amd ryzen_9_7900 - No
Operating System amd ryzen_9_7900x_firmware ≤ comboam5_1.0.8.0 Yes
Hardware amd ryzen_9_7900x - No
Operating System amd ryzen_9_7900x3d_firmware < comboam5_1.0.8.0 Yes
Hardware amd ryzen_9_7900x3d - No
Operating System amd ryzen_9_7950x_firmware < comboam5_1.0.8.0 Yes
Hardware amd ryzen_9_7950x - No
Operating System amd ryzen_9_7950x3d_firmware < comboam5_1.0.8.0 Yes
Hardware amd ryzen_9_7950x3d - No
Operating System amd ryzen_threadripper_7960x_firmware < comboam5_1.0.8.0 Yes
Hardware amd ryzen_threadripper_7960x - No
Operating System amd ryzen_threadripper_7970x_firmware < comboam5_1.0.8.0 Yes
Hardware amd ryzen_threadripper_7970x - No
Operating System amd ryzen_threadripper_7980x_firmware < comboam5_1.0.8.0 Yes
Hardware amd ryzen_threadripper_7980x - No
Operating System amd ryzen_threadripper_pro_7945wx_firmware < comboam5_1.0.8.0 Yes
Hardware amd ryzen_threadripper_pro_7945wx - No
Operating System amd ryzen_threadripper_pro_7955wx_firmware < comboam5_1.0.8.0 Yes
Hardware amd ryzen_threadripper_pro_7955wx - No
Operating System amd ryzen_threadripper_pro_7965wx_firmware < comboam5_1.0.8.0 Yes
Hardware amd ryzen_threadripper_pro_7965wx - No
Operating System amd ryzen_threadripper_pro_7975wx_firmware < comboam5_1.0.8.0 Yes
Hardware amd ryzen_threadripper_pro_7975wx - No
Operating System amd ryzen_threadripper_pro_7985wx_firmware < comboam5_1.0.8.0 Yes
Hardware amd ryzen_threadripper_pro_7985wx - No
Operating System amd ryzen_threadripper_pro_7995wx_firmware ≤ comboam5_1.0.8.0 Yes
Hardware amd ryzen_threadripper_pro_7995wx - No
Operating System amd ryzen_7_4700g_firmware < comboam4v2pi_1.2.0.c Yes
Hardware amd ryzen_7_4700g - No
Operating System amd ryzen_7_4700ge_firmware < comboam4v2pi_1.2.0.c Yes
Hardware amd ryzen_7_4700ge - No
Operating System amd ryzen_5_4600g_firmware < comboam4v2pi_1.2.0.c Yes
Hardware amd ryzen_5_4600g - No
Operating System amd ryzen_5_4600ge_firmware < comboam4v2pi_1.2.0.c Yes
Hardware amd ryzen_5_4600ge - No
Operating System amd ryzen_3_4300g_firmware < comboam4v2pi_1.2.0.c Yes
Hardware amd ryzen_3_4300g - No
Operating System amd ryzen_3_4300ge_firmware < comboam4v2pi_1.2.0.c Yes
Hardware amd ryzen_3_4300ge - No
Operating System amd ryzen_9_4900h_firmware < renoirpi-fp6_1.0.0.d Yes
Hardware amd ryzen_9_4900h - No
Operating System amd ryzen_7_4800u_firmware < renoirpi-fp6_1.0.0.d Yes
Hardware amd ryzen_7_4800u - No
Operating System amd ryzen_7_4700u_firmware ≤ renoirpi-fp6_1.0.0.d Yes
Hardware amd ryzen_7_4700u - No
Operating System amd ryzen_7_4800h_firmware < renoirpi-fp6_1.0.0.d Yes
Hardware amd ryzen_7_4800h - No
Operating System amd ryzen_5_4600u_firmware < renoirpi-fp6_1.0.0.d Yes
Hardware amd ryzen_5_4600u - No
Operating System amd ryzen_5_4500u_firmware < renoirpi-fp6_1.0.0.d Yes
Hardware amd ryzen_5_4500u - No
Operating System amd ryzen_5_4600h_firmware < renoirpi-fp6_1.0.0.d Yes
Hardware amd ryzen_5_4600h - No
Operating System amd ryzen_3_4300u_firmware < renoirpi-fp6_1.0.0.d Yes
Hardware amd ryzen_3_4300u - No
Operating System amd ryzen_9_5980hx_firmware < cezannepi-fp6_1.0.1.0 Yes
Hardware amd ryzen_9_5980hx - No
Operating System amd ryzen_9_5980hs_firmware < cezannepi-fp6_1.0.1.0 Yes
Hardware amd ryzen_9_5980hs - No
Operating System amd ryzen_7_5825u_firmware < cezannepi-fp6_1.0.1.0 Yes
Hardware amd ryzen_7_5825u - No
Operating System amd ryzen_9_5900hx_firmware < cezannepi-fp6_1.0.1.0 Yes
Hardware amd ryzen_9_5900hx - No
Operating System amd ryzen_9_5900hs_firmware < cezannepi-fp6_1.0.1.0 Yes
Hardware amd ryzen_9_5900hs - No
Operating System amd ryzen_7_5825c_firmware < cezannepi-fp6_1.0.1.0 Yes
Hardware amd ryzen_7_5825c - No
Operating System amd ryzen_7_5800h_firmware < cezannepi-fp6_1.0.1.0 Yes
Hardware amd ryzen_7_5800h - No
Operating System amd ryzen_5_5625u_firmware < cezannepi-fp6_1.0.1.0 Yes
Hardware amd ryzen_5_5625u - No
Operating System amd ryzen_7_5800hs_firmware < cezannepi-fp6_1.0.1.0 Yes
Hardware amd ryzen_7_5800hs - No
Operating System amd ryzen_5_5625c_firmware < cezannepi-fp6_1.0.1.0 Yes
Hardware amd ryzen_5_5625c - No
Operating System amd ryzen_5_5600h_firmware < cezannepi-fp6_1.0.1.0 Yes
Hardware amd ryzen_5_5600h - No
Operating System amd ryzen_5_5600hs_firmware < cezannepi-fp6_1.0.1.0 Yes
Hardware amd ryzen_5_5600hs - No
Operating System amd ryzen_7_5800u_firmware < cezannepi-fp6_1.0.1.0 Yes
Hardware amd ryzen_7_5800u - No
Operating System amd ryzen_5_5600u_firmware < cezannepi-fp6_1.0.1.0 Yes
Hardware amd ryzen_5_5600u - No
Operating System amd ryzen_5_5560u_firmware < cezannepi-fp6_1.0.1.0 Yes
Hardware amd ryzen_5_5560u - No
Operating System amd ryzen_3_5425u_firmware < cezannepi-fp6_1.0.1.0 Yes
Hardware amd ryzen_3_5425u - No
Operating System amd ryzen_3_5425c_firmware < cezannepi-fp6_1.0.1.0 Yes
Hardware amd ryzen_3_5425c - No
Operating System amd ryzen_3_5400u_firmware < cezannepi-fp6_1.0.1.0 Yes
Hardware amd ryzen_3_5400u - No
Operating System amd ryzen_3_5125c_firmware < cezannepi-fp6_1.0.1.0 Yes
Hardware amd ryzen_3_5125c - No
Operating System amd ryzen_5_7520u_firmware < mendocinopi-ft6_1.0.0.6 Yes
Hardware amd ryzen_5_7520u - No
Operating System amd ryzen_3_7320u_firmware < mendocinopi-ft6_1.0.0.6 Yes
Hardware amd ryzen_3_7320u - No
Operating System amd ryzen_9_6980hx_firmware < rembrandtpi-fp7_1.0.0.a Yes
Hardware amd ryzen_9_6980hx - No
Operating System amd ryzen_9_6980hs_firmware < rembrandtpi-fp7_1.0.0.a Yes
Hardware amd ryzen_9_6980hs - No
Operating System amd ryzen_9_6900hx_firmware < rembrandtpi-fp7_1.0.0.a Yes
Hardware amd ryzen_9_6900hx - No
Operating System amd ryzen_9_6900hs_firmware < rembrandtpi-fp7_1.0.0.a Yes
Hardware amd ryzen_9_6900hs - No
Operating System amd ryzen_7_6800h_firmware < rembrandtpi-fp7_1.0.0.a Yes
Hardware amd ryzen_7_6800h - No
Operating System amd ryzen_7_6800hs_firmware < rembrandtpi-fp7_1.0.0.a Yes
Hardware amd ryzen_7_6800hs - No
Operating System amd ryzen_7_6800u_firmware < rembrandtpi-fp7_1.0.0.a Yes
Hardware amd ryzen_7_6800u - No
Operating System amd ryzen_5_6600h_firmware < rembrandtpi-fp7_1.0.0.a Yes
Hardware amd ryzen_5_6600h - No
Operating System amd ryzen_5_6600hs_firmware < rembrandtpi-fp7_1.0.0.a Yes
Hardware amd ryzen_5_6600hs - No
Operating System amd ryzen_5_6600u_firmware < rembrandtpi-fp7_1.0.0.a Yes
Hardware amd ryzen_5_6600u - No
Operating System amd ryzen_3_7335u_firmware < rembrandtpi-fp7_1.0.0.a Yes
Hardware amd ryzen_3_7335u - No
Operating System amd ryzen_5_7235h_firmware < rembrandtpi-fp7_1.0.0.a Yes
Hardware amd ryzen_5_7235h - No
Operating System amd ryzen_5_7235hs_firmware < rembrandtpi-fp7_1.0.0.a Yes
Hardware amd ryzen_5_7235hs - No
Operating System amd ryzen_5_7535u_firmware < rembrandtpi-fp7_1.0.0.a Yes
Hardware amd ryzen_5_7535u - No
Operating System amd ryzen_5_7535h_firmware < rembrandtpi-fp7_1.0.0.a Yes
Hardware amd ryzen_5_7535h - No
Operating System amd ryzen_5_7535hs_firmware < rembrandtpi-fp7_1.0.0.a Yes
Hardware amd ryzen_5_7535hs - No
Operating System amd ryzen_7_7435h_firmware < rembrandtpi-fp7_1.0.0.a Yes
Hardware amd ryzen_7_7435h - No
Operating System amd ryzen_7_7435hs_firmware < rembrandtpi-fp7_1.0.0.a Yes
Hardware amd ryzen_7_7435hs - No
Operating System amd ryzen_7_7735u_firmware < rembrandtpi-fp7_1.0.0.a Yes
Hardware amd ryzen_7_7735u - No
Operating System amd ryzen_7_7736u_firmware < rembrandtpi-fp7_1.0.0.a Yes
Hardware amd ryzen_7_7736u - No
Operating System amd ryzen_7_7735h_firmware < rembrandtpi-fp7_1.0.0.a Yes
Hardware amd ryzen_7_7735h - No
Operating System amd ryzen_7_7735hs_firmware < rembrandtpi-fp7_1.0.0.a Yes
Hardware amd ryzen_7_7735hs - No
Operating System amd ryzen_3_3250u_firmware < cezannepi-fp6_1.0.1.0 Yes
Hardware amd ryzen_3_3250u - No
Operating System amd ryzen_3_3250c_firmware < cezannepi-fp6_1.0.1.0 Yes
Hardware amd ryzen_3_3250c - No
Operating System amd ryzen_3_3200u_firmware < cezannepi-fp6_1.0.1.0 Yes
Hardware amd ryzen_3_3200u - No
Operating System amd ryzen_7_3780u_firmware < cezannepi-fp6_1.0.1.0 Yes
Hardware amd ryzen_7_3780u - No
Operating System amd ryzen_7_3750h_firmware < cezannepi-fp6_1.0.1.0 Yes
Hardware amd ryzen_7_3750h - No
Operating System amd ryzen_7_3700c_firmware < cezannepi-fp6_1.0.1.0 Yes
Hardware amd ryzen_7_3700c - No
Operating System amd ryzen_7_3700u_firmware < cezannepi-fp6_1.0.1.0 Yes
Hardware amd ryzen_7_3700u - No
Operating System amd ryzen_5_3580u_firmware < cezannepi-fp6_1.0.1.0 Yes
Hardware amd ryzen_5_3580u - No
Operating System amd ryzen_5_3550h_firmware < cezannepi-fp6_1.0.1.0 Yes
Hardware amd ryzen_5_3550h - No
Operating System amd ryzen_5_3500c_firmware < cezannepi-fp6_1.0.1.0 Yes
Hardware amd ryzen_5_3500c - No
Operating System amd ryzen_5_3500u_firmware < cezannepi-fp6_1.0.1.0 Yes
Hardware amd ryzen_5_3500u - No
Operating System amd ryzen_5_3450u_firmware < cezannepi-fp6_1.0.1.0 Yes
Hardware amd ryzen_5_3450u - No
Operating System amd ryzen_3_3350u_firmware < cezannepi-fp6_1.0.1.0 Yes
Hardware amd ryzen_3_3350u - No
Operating System amd ryzen_3_3300u_firmware < cezannepi-fp6_1.0.1.0 Yes
Hardware amd ryzen_3_3300u - No
Operating System amd ryzen_3_7440u_firmware < phoenixpi-fp8-fp7_1.1.0.0 Yes
Hardware amd ryzen_3_7440u - No
Operating System amd ryzen_5_pro_7540u_firmware < phoenixpi-fp8-fp7_1.1.0.0 Yes
Hardware amd ryzen_5_pro_7540u - No
Operating System amd ryzen_5_pro_7545u_firmware < phoenixpi-fp8-fp7_1.1.0.0 Yes
Hardware amd ryzen_5_pro_7545u - No
Operating System amd ryzen_5_pro_7640u_firmware < phoenixpi-fp8-fp7_1.1.0.0 Yes
Hardware amd ryzen_5_pro_7640u - No
Operating System amd ryzen_5_7640h_firmware < phoenixpi-fp8-fp7_1.1.0.0 Yes
Hardware amd ryzen_5_7640h - No
Operating System amd ryzen_5_pro_7640hs_firmware < phoenixpi-fp8-fp7_1.1.0.0 Yes
Hardware amd ryzen_5_pro_7640hs - No
Operating System amd ryzen_7_pro_7840u_firmware < phoenixpi-fp8-fp7_1.1.0.0 Yes
Hardware amd ryzen_7_pro_7840u - No
Operating System amd ryzen_7_7840h_firmware < phoenixpi-fp8-fp7_1.1.0.0 Yes
Hardware amd ryzen_7_7840h - No
Operating System amd ryzen_7_pro_7840hs_firmware < phoenixpi-fp8-fp7_1.1.0.0 Yes
Hardware amd ryzen_7_pro_7840hs - No
Operating System amd ryzen_9_7940h_firmware < phoenixpi-fp8-fp7_1.1.0.0 Yes
Hardware amd ryzen_9_7940h - No
Operating System amd ryzen_9_pro_7940hs_firmware < phoenixpi-fp8-fp7_1.1.0.0 Yes
Hardware amd ryzen_9_pro_7940hs - No
Operating System amd ryzen_5_7645hx_firmware < dragonrangefl1pi_1.0.0.3b Yes
Hardware amd ryzen_5_7645hx - No
Operating System amd ryzen_7_7745hx_firmware < dragonrangefl1pi_1.0.0.3b Yes
Hardware amd ryzen_7_7745hx - No
Operating System amd ryzen_9_7845hx_firmware < dragonrangefl1pi_1.0.0.3b Yes
Hardware amd ryzen_9_7845hx - No
Operating System amd ryzen_9_7945hx_firmware < dragonrangefl1pi_1.0.0.3b Yes
Hardware amd ryzen_9_7945hx - No
Operating System amd ryzen_9_7945hx3d_firmware < dragonrangefl1pi_1.0.0.3b Yes
Hardware amd ryzen_9_7945hx3d - No
Operating System amd ryzen_9_7940hx_firmware < dragonrangefl1pi_1.0.0.3b Yes
Hardware amd ryzen_9_7940hx - No
Operating System amd ryzen_embedded_v2546_firmware < embeddedpi-fp6_1.0.0.9 Yes
Hardware amd ryzen_embedded_v2546 - No
Operating System amd ryzen_embedded_v2516_firmware < embeddedpi-fp6_1.0.0.9 Yes
Hardware amd ryzen_embedded_v2516 - No
Operating System amd ryzen_embedded_v2718_firmware < embeddedpi-fp6_1.0.0.9 Yes
Hardware amd ryzen_embedded_v2718 - No
Operating System amd ryzen_embedded_v2748_firmware < embeddedpi-fp6_1.0.0.9 Yes
Hardware amd ryzen_embedded_v2748 - No
Operating System amd ryzen_embedded_v3c14_firmware < embeddedpi-fp7r2_1.0.0.9 Yes
Hardware amd ryzen_embedded_v3c14 - No
Operating System amd ryzen_embedded_v3c44_firmware < embeddedpi-fp7r2_1.0.0.9 Yes
Hardware amd ryzen_embedded_v3c44 - No
Operating System amd ryzen_embedded_v3c16_firmware < embeddedpi-fp7r2_1.0.0.9 Yes
Hardware amd ryzen_embedded_v3c16 - No
Operating System amd ryzen_embedded_v3c18_firmware < embeddedpi-fp7r2_1.0.0.9 Yes
Hardware amd ryzen_embedded_v3c18 - No
Operating System amd ryzen_embedded_v3c48_firmware < embeddedpi-fp7r2_1.0.0.9 Yes
Hardware amd ryzen_embedded_v3c48 - No

References

How SecUtils Interprets This CVE

SecUtils normalizes and enriches National Vulnerability Database (NVD) records by standardizing vendor and product identifiers, aggregating vulnerability metadata from both NVD and MITRE sources, and providing structured context for security teams. For amd's affected products, we extract Common Platform Enumeration (CPE) data, Common Weakness Enumeration (CWE) classifications, CVSS severity metrics, and reference data to enable rapid vulnerability prioritization and asset correlation. This record contains no exploit code, proof-of-concept instructions, or attack methodologies—only defensive intelligence necessary for patch management, risk assessment, and security operations.