First published: Tue Nov 14 2023(Updated: )
Improper access control in System Management Mode (SMM) may allow an attacker to write to SPI ROM potentially leading to arbitrary code execution.
Credit: psirt@amd.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Any of | ||
AMD Ryzen 9 3900XT Firmware | =comboam4_pi_1.0.0.9 | |
AMD Ryzen 9 3900XT Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 9 Pro 3900 | ||
All of | ||
Any of | ||
AMD Ryzen 9 3900X | =comboam4_pi_1.0.0.9 | |
AMD Ryzen 9 3900X | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 9 3900X | ||
All of | ||
Any of | ||
AMD Ryzen 9 3900XT Firmware | =comboam4_pi_1.0.0.9 | |
AMD Ryzen 9 3900XT Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 9 3900XT Firmware | ||
All of | ||
Any of | ||
AMD Ryzen 9 3950XT firmware | =comboam4_pi_1.0.0.9 | |
AMD Ryzen 9 3950XT firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 9 3950XT | ||
All of | ||
Any of | ||
AMD Ryzen 7 3700X Firmware | =comboam4_pi_1.0.0.9 | |
AMD Ryzen 7 3700X Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 7 3700XT | ||
All of | ||
Any of | ||
AMD Ryzen 7 3800XT Firmware | =comboam4_pi_1.0.0.9 | |
AMD Ryzen 7 3800XT Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 7 3800X Firmware | ||
All of | ||
Any of | ||
AMD Ryzen 7 3800XT Firmware | =comboam4_pi_1.0.0.9 | |
AMD Ryzen 7 3800XT Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 7 3800XT Firmware | ||
All of | ||
Any of | ||
AMD Ryzen 5 3500X Firmware | =comboam4_pi_1.0.0.9 | |
AMD Ryzen 5 3500X Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 5 3500 | ||
All of | ||
Any of | ||
AMD Ryzen 5 3500X Firmware | =comboam4_pi_1.0.0.9 | |
AMD Ryzen 5 3500X Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 5 3500X Firmware | ||
All of | ||
Any of | ||
AMD Ryzen 5 3600 firmware | =comboam4_pi_1.0.0.9 | |
AMD Ryzen 5 3600 firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 5 3600 firmware | ||
All of | ||
Any of | ||
AMD Ryzen 5 3600X Firmware | =comboam4_pi_1.0.0.9 | |
AMD Ryzen 5 3600X Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 5 3600X Firmware | ||
All of | ||
Any of | ||
AMD Ryzen 5 3600XT | =comboam4_pi_1.0.0.9 | |
AMD Ryzen 5 3600XT | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 5 3600XT firmware | ||
All of | ||
Any of | ||
AMD Ryzen 3100 Firmware | =comboam4_pi_1.0.0.9 | |
AMD Ryzen 3100 Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 3 3100 Firmware | ||
All of | ||
Any of | ||
AMD Ryzen 3 3300X Firmware | =comboam4_pi_1.0.0.9 | |
AMD Ryzen 3 3300X Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 3 3300X Firmware | ||
All of | ||
AMD Ryzen 9 5900 Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 5900 CPU | ||
All of | ||
AMD Ryzen 9 5900X Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 9 5900X | ||
All of | ||
AMD Ryzen 9 5950X | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 9 5950X | ||
All of | ||
AMD Ryzen 9 Pro 5945 Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 9 Pro 5945WX | ||
All of | ||
AMD Ryzen 7 Pro 5845 Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 7 Pro 5845 Firmware | ||
All of | ||
AMD Ryzen 7 5800 Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 7 5800 | ||
All of | ||
AMD Ryzen 7 5800X Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 7 5800X | ||
All of | ||
AMD Ryzen 5700X Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 5700X Firmware | ||
All of | ||
AMD Ryzen 5 5600 Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 5 5600 | ||
All of | ||
AMD Ryzen 5 5600X | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 5 5600X Firmware | ||
All of | ||
AMD Ryzen 5 5600 3XD Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 5 5600 3XD Firmware | ||
All of | ||
AMD Ryzen 5 Pro 5645 Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 5 Pro 5645 Firmware | ||
All of | ||
AMD Ryzen 5 5500 firmware | =comboam4v2_pi_1.2.0.8 | |
AMD Ryzen 5 5600 | ||
All of | ||
AMD Ryzen 5 5500X Firmware | =comboam4v2_pi_1.2.0.8 | |
AMD Ryzen 5 5600X Firmware | ||
All of | ||
AMD Ryzen 5 5500 3XD Firmware | =comboam4v2_pi_1.2.0.8 | |
AMD Ryzen 5 5600 3XD Firmware | ||
All of | ||
AMD Ryzen 7 5700 Firmware | =comboam4v2_pi_1.2.0.8 | |
AMD Ryzen 7 5700U Firmware | ||
All of | ||
AMD Ryzen 5 5500 firmware | =comboam4v2_pi_1.2.0.8 | |
AMD Ryzen 5 5500 firmware | ||
All of | ||
AMD Ryzen 3 5100 Firmware | =comboam4v2_pi_1.2.0.8 | |
AMD Ryzen 3 5100 Firmware | ||
All of | ||
Any of | ||
AMD Ryzen 5 Pro 3400G Firmware | =comboam4_pi_1.0.0.9 | |
AMD Ryzen 5 Pro 3400G Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 5 Pro 3400G Firmware | ||
All of | ||
Any of | ||
AMD Ryzen Pro 3400GE firmware | =comboam4_pi_1.0.0.9 | |
AMD Ryzen Pro 3400GE firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 5 Pro 3400GE Firmware | ||
All of | ||
Any of | ||
AMD Ryzen Pro 3350G Firmware | =comboam4_pi_1.0.0.9 | |
AMD Ryzen Pro 3350G Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen Pro 3350G Firmware | ||
All of | ||
Any of | ||
AMD Ryzen 5 Pro 3350GE Firmware | =comboam4_pi_1.0.0.9 | |
AMD Ryzen 5 Pro 3350GE Firmware | =comboam4_v2_pi_1.2.0.8 | |
AMD Ryzen 5 Pro 3350GE Firmware | ||
All of | ||
AMD Ryzen Threadripper 2990WX | =summitpi-sp3r2_1.1.0.6 | |
AMD Ryzen Threadripper 2990WX | ||
All of | ||
AMD Ryzen Threadripper 2970WX Firmware | =summitpi-sp3r2_1.1.0.6 | |
AMD Ryzen Threadripper 2970WX Firmware | ||
All of | ||
AMD Ryzen Threadripper 2950X Firmware | =summitpi-sp3r2_1.1.0.6 | |
AMD Ryzen Threadripper 2950X Firmware | ||
All of | ||
AMD Ryzen Threadripper 2920X | =summitpi-sp3r2_1.1.0.6 | |
AMD Ryzen Threadripper 2920X Firmware | ||
All of | ||
AMD Ryzen Threadripper Pro 3995WX Firmware | =castlepeakpi-sp3r2_1.1.0.8 | |
AMD Ryzen Threadripper Pro | ||
All of | ||
AMD Ryzen Threadripper Pro 3975WX Firmware | =castlepeakpi-sp3r2_1.1.0.8 | |
AMD Ryzen Threadripper Pro 3975WX Firmware | ||
All of | ||
AMD Ryzen Threadripper Pro 3955WX Firmware | =castlepeakpi-sp3r2_1.1.0.8 | |
AMD Ryzen Threadripper Pro 3955WX Firmware | ||
All of | ||
AMD Ryzen Threadripper Pro | =castlepeakpi-sp3r2_1.1.0.8 | |
AMD Ryzen Threadripper Pro 3945WX Firmware | ||
All of | ||
AMD Ryzen Threadripper 3990X | =castlepeakpi-sp3r2_1.1.0.8 | |
AMD Ryzen Threadripper 3990X | ||
All of | ||
AMD Ryzen Threadripper 3970X | =castlepeakpi-sp3r2_1.1.0.8 | |
AMD Ryzen Threadripper 3970X Firmware | ||
All of | ||
AMD Ryzen Threadripper 3960X Firmware | =castlepeakpi-sp3r2_1.1.0.8 | |
AMD Ryzen Threadripper 3960X Firmware | ||
All of | ||
AMD Ryzen 3 3250U Firmware | =picassopi-fp5_1.0.0.e | |
AMD Ryzen 3 3250U Firmware | ||
All of | ||
AMD Ryzen 3 3250C Firmware | =picassopi-fp5_1.0.0.e | |
AMD Ryzen 3 3250C Firmware | ||
All of | ||
AMD Ryzen 3 3200U Firmware | =picassopi-fp5_1.0.0.e | |
AMD Ryzen 3 3200U Firmware | ||
All of | ||
AMD Athlon 3015e Firmware | =pollockpi-ft5_1.0.0.5 | |
AMD Athlon 3015e Firmware | ||
All of | ||
AMD 3015CE Firmware | =pollockpi-ft5_1.0.0.5 | |
AMD Athlon 3015CE Firmware | ||
All of | ||
AMD Ryzen 7 3780U Firmware | =picassopi-fp5_1.0.0.e | |
AMD Ryzen 7 3780U Firmware | ||
All of | ||
AMD Ryzen 7 3750H Firmware | =picassopi-fp5_1.0.0.e | |
AMD Ryzen 7 3750H Firmware | ||
All of | ||
AMD Ryzen 7 3700C Firmware | =picassopi-fp5_1.0.0.e | |
AMD Ryzen 7 3700C Firmware | ||
All of | ||
AMD Ryzen 7 Pro 3700U Firmware | =picassopi-fp5_1.0.0.e | |
AMD Ryzen 7 3700U | ||
All of | ||
AMD Ryzen 5 3580U Firmware | =picassopi-fp5_1.0.0.e | |
AMD Ryzen 5 3580U Firmware | ||
All of | ||
AMD Ryzen 5 3550H Firmware | =picassopi-fp5_1.0.0.e | |
AMD Ryzen 5 3550H Firmware | ||
All of | ||
AMD Ryzen 5 3500C Firmware | =picassopi-fp5_1.0.0.e | |
AMD Ryzen 5 3500C Firmware | ||
All of | ||
AMD Ryzen 5 Pro 3500U Firmware | =picassopi-fp5_1.0.0.e | |
AMD Ryzen 5 3500U Firmware | ||
All of | ||
AMD Ryzen 5 3450U Firmware | =picassopi-fp5_1.0.0.e | |
AMD Ryzen 5 3450U | ||
All of | ||
AMD Ryzen 3 3350U Firmware | =picassopi-fp5_1.0.0.e | |
AMD Ryzen 3 3350U Firmware | ||
All of | ||
AMD Ryzen 3 Pro 3300U Firmware | =picassopi-fp5_1.0.0.e | |
AMD Ryzen 3 Pro 3300U | ||
All of | ||
AMD Ryzen 9 4900H Firmware | =renoirpi-fp6_1.0.0.9 | |
AMD Ryzen 9 4900H Firmware | ||
All of | ||
AMD Ryzen 9 4900HS Firmware | =renoirpi-fp6_1.0.0.9 | |
AMD Ryzen 9 4900HS Firmware | ||
All of | ||
AMD Ryzen 7 4800HS | =renoirpi-fp6_1.0.0.9 | |
AMD Ryzen 7 4800H | ||
All of | ||
AMD Ryzen 7 4800H Firmware | =renoirpi-fp6_1.0.0.9 | |
AMD Ryzen 7 4800H Firmware | ||
All of | ||
AMD Ryzen 7 4800U Firmware | =renoirpi-fp6_1.0.0.9 | |
AMD Ryzen 7 4800U Firmware | ||
All of | ||
AMD Ryzen 7 4700U Firmware | =renoirpi-fp6_1.0.0.9 | |
AMD Ryzen 7 4700U Firmware | ||
All of | ||
AMD Ryzen 7 Firmware | =renoirpi-fp6_1.0.0.9 | |
AMD Ryzen 7 4980U | ||
All of | ||
AMD Ryzen 5 4600H Firmware | =renoirpi-fp6_1.0.0.9 | |
AMD Ryzen 5 4600H Firmware | ||
All of | ||
AMD Ryzen 5 4600HS | =renoirpi-fp6_1.0.0.9 | |
AMD Ryzen 5 4600HS Firmware | ||
All of | ||
AMD Ryzen 5 4500U Firmware | =renoirpi-fp6_1.0.0.9 | |
AMD Ryzen 5 4500U Firmware | ||
All of | ||
AMD Ryzen 5 4600U Firmware | =renoirpi-fp6_1.0.0.9 | |
AMD Ryzen 5 4600U Firmware | ||
All of | ||
AMD Ryzen 5 4680U Firmware | =renoirpi-fp6_1.0.0.9 | |
AMD Ryzen 5 4680U Firmware | ||
All of | ||
AMD Ryzen 3 4300U Firmware | =renoirpi-fp6_1.0.0.9 | |
AMD Ryzen 3 4300U Firmware | ||
All of | ||
AMD Ryzen 9 5900HS Firmware | =cezannepi-fp6_1.0.0.b | |
AMD Ryzen 9 5900HS Firmware | ||
All of | ||
AMD Ryzen 9 5900HX Firmware | =cezannepi-fp6_1.0.0.b | |
AMD Ryzen 9 5900HX Firmware | ||
All of | ||
AMD Ryzen 9 5980HX | =cezannepi-fp6_1.0.0.b | |
AMD Ryzen 9 5980HX | ||
All of | ||
AMD Ryzen 9 5980HS Firmware | =cezannepi-fp6_1.0.0.b | |
AMD Ryzen 9 5980HS Firmware | ||
All of | ||
AMD Ryzen 7 5800H Firmware | =cezannepi-fp6_1.0.0.b | |
AMD Ryzen 7 5800H Firmware | ||
All of | ||
AMD Ryzen 7 5800HS Firmware | =cezannepi-fp6_1.0.0.b | |
AMD Ryzen 7 5800HS Firmware | ||
All of | ||
AMD Ryzen 7 5825U Firmware | =cezannepi-fp6_1.0.0.b | |
AMD Ryzen 7 5825U Firmware | ||
All of | ||
AMD Ryzen 7 5800U Firmware | =cezannepi-fp6_1.0.0.b | |
AMD Ryzen 7 5800U Firmware | ||
All of | ||
AMD Ryzen 5 5600H Firmware | =cezannepi-fp6_1.0.0.b | |
AMD Ryzen 5 5600H Firmware | ||
All of | ||
AMD Ryzen 5 5600HS Firmware | =cezannepi-fp6_1.0.0.b | |
AMD Ryzen 5 5600HS Firmware | ||
All of | ||
AMD Ryzen 5 5625U Firmware | =cezannepi-fp6_1.0.0.b | |
AMD Ryzen 5 5625U Firmware | ||
All of | ||
AMD Ryzen 5 5600U Firmware | =cezannepi-fp6_1.0.0.b | |
AMD Ryzen 5 5600U Firmware | ||
All of | ||
AMD Ryzen 5 5560U Firmware | =cezannepi-fp6_1.0.0.b | |
AMD Ryzen 5 5560U Firmware | ||
All of | ||
AMD Ryzen 5 5500H Firmware | =cezannepi-fp6_1.0.0.b | |
AMD Ryzen 5 5500H Firmware | ||
All of | ||
AMD Ryzen 3 5425U | =cezannepi-fp6_1.0.0.b | |
AMD Ryzen 3 5425U Firmware | ||
All of | ||
AMD Ryzen 3 5400U Firmware | =cezannepi-fp6_1.0.0.b | |
AMD Ryzen 3 5400U Firmware | ||
All of | ||
AMD Ryzen 3 5125C Firmware | =cezannepi-fp6_1.0.0.b | |
AMD Ryzen 3 5125C Firmware | ||
All of | ||
AMD Ryzen 6900HS Firmware | =rembrandtpi-fp7_1.0.0.2 | |
AMD Ryzen 9 6900HS Firmware | ||
All of | ||
AMD Ryzen 9 6900HX Firmware | =rembrandtpi-fp7_1.0.0.2 | |
AMD Ryzen 9 6900HX Firmware | ||
All of | ||
AMD Ryzen 9 6980HX | =rembrandtpi-fp7_1.0.0.2 | |
AMD Ryzen 9 6980HX firmware | ||
All of | ||
AMD Ryzen 6980HS Firmware | =rembrandtpi-fp7_1.0.0.2 | |
AMD Ryzen 9 6980HS Firmware | ||
All of | ||
AMD Ryzen 7 6800H Firmware | =rembrandtpi-fp7_1.0.0.2 | |
AMD Ryzen 7 6800H Firmware | ||
All of | ||
AMD Ryzen 7 6800H Firmware | =rembrandtpi-fp7_1.0.0.2 | |
AMD Ryzen 7 6800HS firmware | ||
All of | ||
AMD Ryzen 7 6800U Firmware | =rembrandtpi-fp7_1.0.0.2 | |
AMD Ryzen 7 6800U Firmware | ||
All of | ||
AMD Ryzen 5 6600H firmware | =rembrandtpi-fp7_1.0.0.2 | |
AMD Ryzen 5 6600H firmware | ||
All of | ||
AMD Ryzen 6600HS | =rembrandtpi-fp7_1.0.0.2 | |
AMD Ryzen 5 6600HS Firmware | ||
All of | ||
AMD Ryzen 6600U Firmware | =rembrandtpi-fp7_1.0.0.2 | |
AMD Ryzen 5 6600U Firmware | ||
All of | ||
AMD Ryzen 3 7335U Firmware | =rembrandtpi-fp7_1.0.0.2 | |
AMD Ryzen 3 7335U Firmware | ||
All of | ||
AMD Ryzen 5 7535U firmware | =rembrandtpi-fp7_1.0.0.2 | |
AMD Ryzen 5 7535U firmware | ||
All of | ||
AMD Ryzen 5 7535HS Firmware | =rembrandtpi-fp7_1.0.0.2 | |
AMD Ryzen 5 7535HS Firmware | ||
All of | ||
AMD Ryzen 7 7735U Firmware | =rembrandtpi-fp7_1.0.0.2 | |
AMD Ryzen 7 7735U Firmware | ||
All of | ||
AMD Ryzen 7 7736U Firmware | =rembrandtpi-fp7_1.0.0.2 | |
AMD Ryzen 7 7736U | ||
All of | ||
AMD Ryzen 7 7735HS Firmware | =rembrandtpi-fp7_1.0.0.2 | |
AMD Ryzen 7 7735HS Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-23821 is rated as critical due to the potential for arbitrary code execution.
To mitigate CVE-2022-23821, update the firmware of the affected AMD Ryzen devices to the latest version provided by AMD.
CVE-2022-23821 affects specific AMD Ryzen firmware versions, including several Ryzen 9, Ryzen 7, and Ryzen 5 models.
Exploiting CVE-2022-23821 could allow an attacker to write to the SPI ROM, potentially leading to arbitrary code execution.
Yes, AMD has released firmware updates that address CVE-2022-23821, which should be applied to affected devices.