First published: Tue Nov 14 2023(Updated: )
Failure to validate the AMD SMM communication buffer may allow an attacker to corrupt the SMRAM potentially leading to arbitrary code execution.
Credit: psirt@amd.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Any of | ||
AMD Ryzen 9 3900X Firmware | =comboam4_pi_1.0.0.9 | |
AMD Ryzen 9 3900X Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 9 Pro 3900 | ||
All of | ||
Any of | ||
AMD Ryzen 9 3900X | =comboam4_pi_1.0.0.9 | |
AMD Ryzen 9 3900X | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 9 3900X | ||
All of | ||
Any of | ||
AMD Ryzen 9 3900XT Firmware | =comboam4_pi_1.0.0.9 | |
AMD Ryzen 9 3900XT Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 9 3900XT Firmware | ||
All of | ||
Any of | ||
AMD Ryzen 9 3950x firmware | =comboam4_pi_1.0.0.9 | |
AMD Ryzen 9 3950x firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 9 3950x firmware | ||
All of | ||
Any of | ||
AMD Ryzen 7 3700X Firmware | =comboam4_pi_1.0.0.9 | |
AMD Ryzen 7 3700X Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 7 3700X Firmware | ||
All of | ||
Any of | ||
AMD Ryzen 7 3800XT Firmware | =comboam4_pi_1.0.0.9 | |
AMD Ryzen 7 3800XT Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 7 3800X | ||
All of | ||
Any of | ||
AMD Ryzen 7 3800XT Firmware | =comboam4_pi_1.0.0.9 | |
AMD Ryzen 7 3800XT Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 7 3800XT Firmware | ||
All of | ||
Any of | ||
AMD Ryzen 5 3500 firmware | =comboam4_pi_1.0.0.9 | |
AMD Ryzen 5 3500 firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 5 3500 | ||
All of | ||
Any of | ||
AMD Ryzen 5 3500X Firmware | =comboam4_pi_1.0.0.9 | |
AMD Ryzen 5 3500X Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 5 3500X Firmware | ||
All of | ||
Any of | ||
AMD Ryzen 5 3600 firmware | =comboam4_pi_1.0.0.9 | |
AMD Ryzen 5 3600 firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 5 3600 | ||
All of | ||
Any of | ||
AMD Ryzen 5 3600X Firmware | =comboam4_pi_1.0.0.9 | |
AMD Ryzen 5 3600X Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 5 3600X Firmware | ||
All of | ||
Any of | ||
AMD Ryzen 5 3600XT firmware | =comboam4_pi_1.0.0.9 | |
AMD Ryzen 5 3600XT firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 5 3600XT firmware | ||
All of | ||
Any of | ||
AMD Ryzen 3 3100 Firmware | =comboam4_pi_1.0.0.9 | |
AMD Ryzen 3 3100 Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 3 3100 Firmware | ||
All of | ||
Any of | ||
AMD Ryzen 3 3300X Firmware | =comboam4_pi_1.0.0.9 | |
AMD Ryzen 3 3300X Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 3 3300X Firmware | ||
All of | ||
AMD Ryzen 9 5900 Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 5900 CPU | ||
All of | ||
AMD Ryzen 9 5900X Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 9 5900X | ||
All of | ||
AMD Ryzen 9 5950X | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 9 5950X | ||
All of | ||
AMD Ryzen 9 Pro 5945 Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 9 Pro 5945 Firmware | ||
All of | ||
AMD Ryzen 7 Pro 5845 Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 7 Pro 5845 Firmware | ||
All of | ||
AMD Ryzen 7 5800 Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 7 5800 | ||
All of | ||
AMD Ryzen 7 5800X Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 7 5800X | ||
All of | ||
AMD Ryzen 7 5700X Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 7 5700X Firmware | ||
All of | ||
AMD Ryzen 5 5600 Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 5 5600 | ||
All of | ||
AMD Ryzen 5 5600X Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 5 5600X Firmware | ||
All of | ||
amd ryzen 5 56003xd firmware | =comboam4_v2_pi_1.2.0.8 | |
amd ryzen 5 56003xd | ||
All of | ||
AMD Ryzen 5 Pro 5645 Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 5 Pro 5645 | ||
All of | ||
AMD Ryzen 5 5500 firmware | =comboam4v2_pi_1.2.0.8 | |
AMD Ryzen 5 5600 | ||
All of | ||
amd ryzen 5 5500x firmware | =comboam4v2_pi_1.2.0.8 | |
AMD Ryzen 5 5600X Firmware | ||
All of | ||
amd ryzen 5 55003xd firmware | =comboam4v2_pi_1.2.0.8 | |
amd ryzen 5 56003xd | ||
All of | ||
AMD Ryzen 7 5700 Firmware | =comboam4v2_pi_1.2.0.8 | |
AMD Ryzen 7 5700U Firmware | ||
All of | ||
AMD Ryzen 5 5500 firmware | =comboam4v2_pi_1.2.0.8 | |
AMD Ryzen 5 5500 firmware | ||
All of | ||
AMD Ryzen 3 5100 Firmware | =comboam4v2_pi_1.2.0.8 | |
AMD Ryzen 3 5100 Firmware | ||
All of | ||
Any of | ||
AMD Ryzen 5 Pro 3400G Firmware | =comboam4_pi_1.0.0.9 | |
AMD Ryzen 5 Pro 3400G Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 5 Pro 3400G Firmware | ||
All of | ||
Any of | ||
AMD Ryzen 5 Pro 3400GE Firmware | =comboam4_pi_1.0.0.9 | |
AMD Ryzen 5 Pro 3400GE Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 5 Pro 3400GE Firmware | ||
All of | ||
Any of | ||
AMD Ryzen Pro 3350G Firmware | =comboam4_pi_1.0.0.9 | |
AMD Ryzen Pro 3350G Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen Pro 3350G Firmware | ||
All of | ||
Any of | ||
AMD Ryzen 5 Pro 3350GE Firmware | =comboam4_pi_1.0.0.9 | |
AMD Ryzen 5 Pro 3350GE Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 5 Pro 3350GE Firmware | ||
All of | ||
AMD Ryzen Threadripper 2990WX | =summitpi-sp3r2_1.1.0.6 | |
AMD Ryzen Threadripper 2990WX | ||
All of | ||
AMD Ryzen Threadripper 2970WX Firmware | =summitpi-sp3r2_1.1.0.6 | |
AMD Ryzen Threadripper 2970WX Firmware | ||
All of | ||
AMD Ryzen Threadripper 2950X Firmware | =summitpi-sp3r2_1.1.0.6 | |
AMD Ryzen Threadripper 2950X Firmware | ||
All of | ||
AMD Ryzen Threadripper 2920X Firmware | =summitpi-sp3r2_1.1.0.6 | |
AMD Ryzen Threadripper 2920X Firmware | ||
All of | ||
AMD Ryzen Threadripper Pro 3995WX Firmware | =castlepeakpi-sp3r2_1.1.0.8 | |
AMD Ryzen Threadripper Pro 3995WX | ||
All of | ||
AMD Ryzen Threadripper Pro 3975WX Firmware | =castlepeakpi-sp3r2_1.1.0.8 | |
AMD Ryzen Threadripper Pro 3975WX Firmware | ||
All of | ||
AMD Ryzen Threadripper Pro 3955WX Firmware | =castlepeakpi-sp3r2_1.1.0.8 | |
AMD Ryzen Threadripper Pro 3955WX | ||
All of | ||
AMD Ryzen Threadripper Pro 3945WX Firmware | =castlepeakpi-sp3r2_1.1.0.8 | |
AMD Ryzen Threadripper Pro 3945WX Firmware | ||
All of | ||
AMD Ryzen Threadripper 3990X | =castlepeakpi-sp3r2_1.1.0.8 | |
AMD Ryzen Threadripper 3990X | ||
All of | ||
AMD Ryzen Threadripper 3970X Firmware | =castlepeakpi-sp3r2_1.1.0.8 | |
AMD Ryzen Threadripper 3970X Firmware | ||
All of | ||
AMD Ryzen Threadripper 3960X Firmware | =castlepeakpi-sp3r2_1.1.0.8 | |
AMD Ryzen Threadripper 3960X Firmware | ||
All of | ||
amd athlon 3015e firmware | =pollockpi-ft5_1.0.0.5 | |
amd athlon 3015e | ||
All of | ||
AMD AMD 3015ce firmware | =pollockpi-ft5_1.0.0.5 | |
amd athlon 3015ce | ||
All of | ||
amd ryzen 7 3780u firmware | =picassopi-fp5_1.0.0.e | |
amd ryzen 7 3780u | ||
All of | ||
AMD Ryzen 7 3750H Firmware | =picassopi-fp5_1.0.0.e | |
AMD Ryzen 7 3750H | ||
All of | ||
AMD Ryzen 7 3700C Firmware | =picassopi-fp5_1.0.0.e | |
AMD Ryzen 7 3700C Firmware | ||
All of | ||
AMD Ryzen 7 3700U Firmware | =picassopi-fp5_1.0.0.e | |
AMD Ryzen 7 3700U | ||
All of | ||
amd ryzen 5 3580u firmware | =picassopi-fp5_1.0.0.e | |
amd ryzen 5 3580u | ||
All of | ||
AMD Ryzen 5 3550H Firmware | =picassopi-fp5_1.0.0.e | |
AMD Ryzen 5 3550H Firmware | ||
All of | ||
AMD Ryzen 5 3500C Firmware | =picassopi-fp5_1.0.0.e | |
AMD Ryzen 5 3500C Firmware | ||
All of | ||
AMD Ryzen 5 3500U Firmware | =picassopi-fp5_1.0.0.e | |
AMD Ryzen 5 3500U | ||
All of | ||
AMD Ryzen 5 3450U Firmware | =picassopi-fp5_1.0.0.e | |
AMD Ryzen 5 3450U | ||
All of | ||
amd ryzen 3 3350u firmware | =picassopi-fp5_1.0.0.e | |
amd ryzen 3 3350u | ||
All of | ||
AMD Ryzen 3 Pro 3300U Firmware | =picassopi-fp5_1.0.0.e | |
AMD Ryzen 3 Pro 3300U | ||
All of | ||
AMD Ryzen 9 4900H Firmware | =renoirpi-fp6_1.0.0.9 | |
AMD Ryzen 9 4900H Firmware | ||
All of | ||
amd ryzen 9 4900hs firmware | =renoirpi-fp6_1.0.0.9 | |
amd ryzen 9 4900hs | ||
All of | ||
amd ryzen 7 4800hs firmware | =renoirpi-fp6_1.0.0.9 | |
amd ryzen 7 4800hs | ||
All of | ||
AMD Ryzen 7 4800H Firmware | =renoirpi-fp6_1.0.0.9 | |
AMD Ryzen 7 4800H | ||
All of | ||
AMD Ryzen 7 4800U Firmware | =renoirpi-fp6_1.0.0.9 | |
AMD Ryzen 7 4800U Firmware | ||
All of | ||
AMD Ryzen 7 4700U Firmware | =renoirpi-fp6_1.0.0.9 | |
AMD Ryzen 7 4700U | ||
All of | ||
amd ryzen 7 4980u firmware | =renoirpi-fp6_1.0.0.9 | |
amd ryzen 7 4980u | ||
All of | ||
AMD Ryzen 5 4600H Firmware | =renoirpi-fp6_1.0.0.9 | |
AMD Ryzen 5 4600H Firmware | ||
All of | ||
amd ryzen 5 4600hs firmware | =renoirpi-fp6_1.0.0.9 | |
amd ryzen 5 4600hs | ||
All of | ||
AMD Ryzen 5 4500U Firmware | =renoirpi-fp6_1.0.0.9 | |
AMD Ryzen 5 4500U | ||
All of | ||
AMD Ryzen 5 4600U Firmware | =renoirpi-fp6_1.0.0.9 | |
AMD Ryzen 5 4600U Firmware | ||
All of | ||
amd ryzen 5 4680u firmware | =renoirpi-fp6_1.0.0.9 | |
amd ryzen 5 4680u | ||
All of | ||
AMD Ryzen 3 4300U Firmware | =renoirpi-fp6_1.0.0.9 | |
AMD Ryzen 3 4300U | ||
All of | ||
AMD Ryzen 9 5900HS Firmware | =cezannepi-fp6_1.0.0.b | |
AMD Ryzen 9 5900HS Firmware | ||
All of | ||
AMD Ryzen 9 5900HX Firmware | =cezannepi-fp6_1.0.0.b | |
AMD Ryzen 9 5900HX | ||
All of | ||
AMD Ryzen 9 5980HX | =cezannepi-fp6_1.0.0.b | |
AMD Ryzen 9 5980HX Firmware | ||
All of | ||
AMD Ryzen 9 5980HS Firmware | =cezannepi-fp6_1.0.0.b | |
AMD Ryzen 9 5980HS Firmware | ||
All of | ||
AMD Ryzen 7 5800H Firmware | =cezannepi-fp6_1.0.0.b | |
AMD Ryzen 7 5800H Firmware | ||
All of | ||
AMD Ryzen 7 5800HS Firmware | =cezannepi-fp6_1.0.0.b | |
AMD Ryzen 7 5800HS Firmware | ||
All of | ||
AMD Ryzen 7 5825U Firmware | =cezannepi-fp6_1.0.0.b | |
AMD Ryzen 7 5825U Firmware | ||
All of | ||
AMD Ryzen 7 5800U Firmware | =cezannepi-fp6_1.0.0.b | |
AMD Ryzen 7 5800U Firmware | ||
All of | ||
AMD Ryzen 5 5600H Firmware | =cezannepi-fp6_1.0.0.b | |
AMD Ryzen 5 5600H | ||
All of | ||
AMD Ryzen 5 5600HS Firmware | =cezannepi-fp6_1.0.0.b | |
AMD Ryzen 5 5600HS | ||
All of | ||
AMD Ryzen 5 5625U Firmware | =cezannepi-fp6_1.0.0.b | |
AMD Ryzen 5 5625U Firmware | ||
All of | ||
AMD Ryzen 5 5600U Firmware | =cezannepi-fp6_1.0.0.b | |
AMD Ryzen 5 5600U | ||
All of | ||
AMD Ryzen 5 5560U Firmware | =cezannepi-fp6_1.0.0.b | |
AMD Ryzen 5 5560U Firmware | ||
All of | ||
amd ryzen 5 5500h firmware | =cezannepi-fp6_1.0.0.b | |
AMD Ryzen 5 5500H | ||
All of | ||
AMD Ryzen 3 5425U | =cezannepi-fp6_1.0.0.b | |
AMD Ryzen 3 5425U | ||
All of | ||
AMD Ryzen 3 5400U Firmware | =cezannepi-fp6_1.0.0.b | |
AMD Ryzen 3 5400U | ||
All of | ||
AMD Ryzen 3 5125C Firmware | =cezannepi-fp6_1.0.0.b | |
AMD Ryzen 3 5125C | ||
All of | ||
AMD Ryzen 9 6900HS Firmware | =rembrandtpi-fp7_1.0.0.2 | |
AMD Ryzen 9 6900HS Firmware | ||
All of | ||
AMD Ryzen 9 6900HX Firmware | =rembrandtpi-fp7_1.0.0.2 | |
AMD Ryzen 9 6900HX Firmware | ||
All of | ||
AMD Ryzen 9 6980HX firmware | =rembrandtpi-fp7_1.0.0.2 | |
AMD Ryzen 9 6980HX firmware | ||
All of | ||
AMD Ryzen 9 6980HS Firmware | =rembrandtpi-fp7_1.0.0.2 | |
AMD Ryzen 9 6980HS Firmware | ||
All of | ||
AMD Ryzen 7 6800H Firmware | =rembrandtpi-fp7_1.0.0.2 | |
AMD Ryzen 7 6800H Firmware | ||
All of | ||
AMD Ryzen 7 6800HS firmware | =rembrandtpi-fp7_1.0.0.2 | |
AMD Ryzen 7 6800HS firmware | ||
All of | ||
AMD Ryzen 7 6800U Firmware | =rembrandtpi-fp7_1.0.0.2 | |
AMD Ryzen 7 6800U Firmware | ||
All of | ||
AMD Ryzen 5 6600H firmware | =rembrandtpi-fp7_1.0.0.2 | |
AMD Ryzen 5 6600H firmware | ||
All of | ||
AMD Ryzen 5 6600HS Firmware | =rembrandtpi-fp7_1.0.0.2 | |
AMD Ryzen 5 6600HS Firmware | ||
All of | ||
AMD Ryzen 5 6600U Firmware | =rembrandtpi-fp7_1.0.0.2 | |
AMD Ryzen 5 6600U Firmware | ||
All of | ||
AMD Ryzen 3 7335U Firmware | =rembrandtpi-fp7_1.0.0.2 | |
AMD Ryzen 3 7335U Firmware | ||
All of | ||
AMD Ryzen 5 7535U firmware | =rembrandtpi-fp7_1.0.0.2 | |
AMD Ryzen 5 7535U firmware | ||
All of | ||
AMD Ryzen 5 7535HS Firmware | =rembrandtpi-fp7_1.0.0.2 | |
AMD Ryzen 5 7535HS Firmware | ||
All of | ||
AMD Ryzen 7 7735U Firmware | =rembrandtpi-fp7_1.0.0.2 | |
AMD Ryzen 7 7735U Firmware | ||
All of | ||
AMD Ryzen 7 7736U Firmware | =rembrandtpi-fp7_1.0.0.2 | |
AMD Ryzen 7 7736U | ||
All of | ||
AMD Ryzen 7 7735HS Firmware | =rembrandtpi-fp7_1.0.0.2 | |
AMD Ryzen 7 7735HS Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-23820 has a severity rating that suggests it could lead to arbitrary code execution if exploited.
To fix CVE-2022-23820, update to the latest firmware versions provided by AMD for affected processors.
The affected AMD products include specific firmware versions for Ryzen 9, 7, 5, and 3 CPUs as well as Ryzen Threadripper and Athlon series.
Yes, CVE-2022-23820 may be exploited remotely if an attacker can send crafted messages to the vulnerable components.
Temporary mitigation strategies may include disabling SMM interfaces or restricting access to vulnerable systems until a firmware update can be applied.