CVE-2022-23813: Buffer Overflow
Published Jan 10, 2023
·Updated
The software interfaces to ASP and SMU may not enforce the SNP memory security policy resulting in a potential loss of integrity of guest memory in a confidential compute environment.
Affected Software
4 affected components
AMD Milanpi-sp3 Firmware<1.0.0.9
AMD Milanpi-sp3
AMD Romepi Firmware<1.0.0.e
AMD Romepi
Event History
Jan 10, 2023
CVE Published
via MITRE·08:56 PM
Data Sourced
via MITRE·08:56 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2022-23813.
2
What is the title of this vulnerability?
The title of this vulnerability is 'The software interfaces to ASP and SMU may not enforce the SNP memory security policy resulting in a…'
3
What is the severity rating of CVE-2022-23813?
The severity rating of CVE-2022-23813 is medium (5.3).
4
Which software versions are affected by CVE-2022-23813?
The software versions affected by CVE-2022-23813 are Amd Milanpi-sp3 Firmware up to version 1.0.0.9 and Amd Romepi Firmware up to version 1.0.0.e.
5
How can I fix the vulnerability in the affected software versions?
To fix the vulnerability in the affected software versions, it is recommended to apply the latest firmware updates provided by AMD.