CVE-2022-23814: Input Validation
Failure to validate addresses provided by software to BIOS commands may result in a potential loss of integrity of guest memory in a confidential compute environment.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-23814?
CVE-2022-23814 is a vulnerability that occurs due to the failure to validate addresses provided by software to BIOS commands, potentially resulting in a loss of integrity of guest memory in a confidential compute environment.
Which software is affected by CVE-2022-23814?
The Amd Milanpi-sp3 Firmware version up to and excluding 1.0.0.9 is affected by CVE-2022-23814.
How severe is CVE-2022-23814?
CVE-2022-23814 has a severity level of 5.3 (Medium).
How can I fix CVE-2022-23814?
To fix CVE-2022-23814, it is recommended to apply the latest firmware update provided by AMD.
Where can I find more information about CVE-2022-23814?
You can find more information about CVE-2022-23814 on the AMD Product Security Bulletin at the following link: [AMD Product Security Bulletin](https://www.amd.com/en/corporate/product-security/bulletin/AMD-SB-1032).