Advisory Published
Updated

CVE-2022-23821

First published: Tue Nov 14 2023(Updated: )

Improper access control in System Management Mode (SMM) may allow an attacker to write to SPI ROM potentially leading to arbitrary code execution.

Credit: psirt@amd.com

Affected SoftwareAffected VersionHow to fix
Amd Ryzen 9 3900 Firmware=comboam4_pi_1.0.0.9
Amd Ryzen 9 3900 Firmware=comboam4_v2_pi_1.2.0.8
Amd Ryzen 9 3900
Amd Ryzen 9 3900x Firmware=comboam4_pi_1.0.0.9
Amd Ryzen 9 3900x Firmware=comboam4_v2_pi_1.2.0.8
Amd Ryzen 9 3900x
Amd Ryzen 9 3900xt Firmware=comboam4_pi_1.0.0.9
Amd Ryzen 9 3900xt Firmware=comboam4_v2_pi_1.2.0.8
Amd Ryzen 9 3900xt
Amd Ryzen 9 3950x Firmware=comboam4_pi_1.0.0.9
Amd Ryzen 9 3950x Firmware=comboam4_v2_pi_1.2.0.8
Amd Ryzen 9 3950x
Amd Ryzen 7 3700x Firmware=comboam4_pi_1.0.0.9
Amd Ryzen 7 3700x Firmware=comboam4_v2_pi_1.2.0.8
Amd Ryzen 7 3700x
Amd Ryzen 7 3800x Firmware=comboam4_pi_1.0.0.9
Amd Ryzen 7 3800x Firmware=comboam4_v2_pi_1.2.0.8
Amd Ryzen 7 3800x
Amd Ryzen 7 3800xt Firmware=comboam4_pi_1.0.0.9
Amd Ryzen 7 3800xt Firmware=comboam4_v2_pi_1.2.0.8
Amd Ryzen 7 3800xt
Amd Ryzen 5 3500 Firmware=comboam4_pi_1.0.0.9
Amd Ryzen 5 3500 Firmware=comboam4_v2_pi_1.2.0.8
Amd Ryzen 5 3500
Amd Ryzen 5 3500x Firmware=comboam4_pi_1.0.0.9
Amd Ryzen 5 3500x Firmware=comboam4_v2_pi_1.2.0.8
Amd Ryzen 5 3500x
Amd Ryzen 5 3600 Firmware=comboam4_pi_1.0.0.9
Amd Ryzen 5 3600 Firmware=comboam4_v2_pi_1.2.0.8
Amd Ryzen 5 3600
Amd Ryzen 5 3600x Firmware=comboam4_pi_1.0.0.9
Amd Ryzen 5 3600x Firmware=comboam4_v2_pi_1.2.0.8
Amd Ryzen 5 3600x
Amd Ryzen 5 3600xt Firmware=comboam4_pi_1.0.0.9
Amd Ryzen 5 3600xt Firmware=comboam4_v2_pi_1.2.0.8
Amd Ryzen 5 3600xt
Microsoft Windows Server 2008 R2=comboam4_pi_1.0.0.9
Microsoft Windows Server 2008 R2=comboam4_v2_pi_1.2.0.8
Microsoft Windows Server 2016
Microsoft Windows Server 2012 R2=comboam4_pi_1.0.0.9
Microsoft Windows Server 2012 R2=comboam4_v2_pi_1.2.0.8
Amd Ryzen 3 3300x
Microsoft Windows Server 2012=comboam4_v2_pi_1.2.0.8
Microsoft Windows Server 2016
Amd Ryzen 9 5900x Firmware=comboam4_v2_pi_1.2.0.8
Amd Ryzen 9 5900x
Amd Ryzen 9 5950x Firmware=comboam4_v2_pi_1.2.0.8
Amd Ryzen 9 5950x
Microsoft Azure Virtual Machines=comboam4_v2_pi_1.2.0.8
Microsoft Azure Virtual Machines
Microsoft Azure Virtual Machines=comboam4_v2_pi_1.2.0.8
Microsoft Windows 10
Microsoft Windows Server 2022=comboam4_v2_pi_1.2.0.8
Microsoft Windows Server 2016
Amd Ryzen 7 5800x Firmware=comboam4_v2_pi_1.2.0.8
Amd Ryzen 7 5800x
Amd Ryzen 7 5700x Firmware=comboam4_v2_pi_1.2.0.8
Amd Ryzen 7 5700x
Amd Ryzen 5 5600 Firmware=comboam4_v2_pi_1.2.0.8
Amd Ryzen 5 5600
Amd Ryzen 5 5600x Firmware=comboam4_v2_pi_1.2.0.8
Amd Ryzen 5 5600x
Amd Ryzen 5 56003xd Firmware=comboam4_v2_pi_1.2.0.8
Amd Ryzen 5 56003xd
Microsoft Windows 11=comboam4_v2_pi_1.2.0.8
Microsoft Windows Server 2022
Amd Ryzen 5 5500 Firmware=comboam4v2_pi_1.2.0.8
Amd Ryzen 5 5500x Firmware=comboam4v2_pi_1.2.0.8
Amd Ryzen 5 55003xd Firmware=comboam4v2_pi_1.2.0.8
Amd Ryzen 7 5700 Firmware=comboam4v2_pi_1.2.0.8
Microsoft Windows Server 2012 R2
Amd Ryzen 5 5500
Microsoft Windows 10=comboam4v2_pi_1.2.0.8
Microsoft Windows 10
Amd Ryzen 5 Pro 3400g Firmware=comboam4_pi_1.0.0.9
Amd Ryzen 5 Pro 3400g Firmware=comboam4_v2_pi_1.2.0.8
Amd Ryzen 5 Pro 3400g
Amd Ryzen 5 Pro 3400ge Firmware=comboam4_pi_1.0.0.9
Amd Ryzen 5 Pro 3400ge Firmware=comboam4_v2_pi_1.2.0.8
Amd Ryzen 5 Pro 3400ge
Amd Ryzen 5 Pro 3350g Firmware=comboam4_pi_1.0.0.9
Amd Ryzen 5 Pro 3350g Firmware=comboam4_v2_pi_1.2.0.8
Amd Ryzen 5 Pro 3350g
Amd Ryzen 5 Pro 3350ge Firmware=comboam4_pi_1.0.0.9
Amd Ryzen 5 Pro 3350ge Firmware=comboam4_v2_pi_1.2.0.8
Amd Ryzen 5 Pro 3350ge
Amd Ryzen Threadripper 2990wx Firmware=summitpi-sp3r2_1.1.0.6
Amd Ryzen Threadripper 2990wx
Amd Ryzen Threadripper 2970wx Firmware=summitpi-sp3r2_1.1.0.6
Amd Ryzen Threadripper 2970wx
Amd Ryzen Threadripper 2950x Firmware=summitpi-sp3r2_1.1.0.6
Amd Ryzen Threadripper 2950x
Amd Ryzen Threadripper 2920x Firmware=summitpi-sp3r2_1.1.0.6
Amd Ryzen Threadripper 2920x
Amd Ryzen Threadripper Pro 3995wx Firmware=castlepeakpi-sp3r2_1.1.0.8
Amd Ryzen Threadripper Pro 3995wx
Amd Ryzen Threadripper Pro 3975wx Firmware=castlepeakpi-sp3r2_1.1.0.8
Amd Ryzen Threadripper Pro 3975wx
Amd Ryzen Threadripper Pro 3955wx Firmware=castlepeakpi-sp3r2_1.1.0.8
Amd Ryzen Threadripper Pro 3955wx
Amd Ryzen Threadripper Pro 3945wx Firmware=castlepeakpi-sp3r2_1.1.0.8
Amd Ryzen Threadripper Pro 3945wx
Amd Ryzen Threadripper 3990x Firmware=castlepeakpi-sp3r2_1.1.0.8
Amd Ryzen Threadripper 3990x
Amd Ryzen Threadripper 3970x Firmware=castlepeakpi-sp3r2_1.1.0.8
Amd Ryzen Threadripper 3970x
Amd Ryzen Threadripper 3960x Firmware=castlepeakpi-sp3r2_1.1.0.8
Amd Ryzen Threadripper 3960x
Microsoft Windows Server 2022=picassopi-fp5_1.0.0.e
Microsoft Windows Server 2008 R2
Amd Ryzen 3 3250c Firmware=picassopi-fp5_1.0.0.e
Amd Ryzen 3 3250c
Microsoft Windows Server 2008 R2=picassopi-fp5_1.0.0.e
Microsoft Windows 10
Amd Athlon 3015e Firmware=pollockpi-ft5_1.0.0.5
Amd Athlon 3015e
Amd Athlon 3015ce Firmware=pollockpi-ft5_1.0.0.5
Amd Athlon 3015ce
Amd Ryzen 7 3780u Firmware=picassopi-fp5_1.0.0.e
Amd Ryzen 7 3780u
Microsoft Windows 11=picassopi-fp5_1.0.0.e
Microsoft Windows Server 2008 R2
Amd Ryzen 7 3700c Firmware=picassopi-fp5_1.0.0.e
Amd Ryzen 7 3700c
Microsoft Windows Server 2012=picassopi-fp5_1.0.0.e
Microsoft Windows Server 2008 R2
Amd Ryzen 5 3580u Firmware=picassopi-fp5_1.0.0.e
Amd Ryzen 5 3580u
Microsoft Windows Server 2012=picassopi-fp5_1.0.0.e
Microsoft Windows Server 2012 R2
Amd Ryzen 5 3500c Firmware=picassopi-fp5_1.0.0.e
Amd Ryzen 5 3500c
Microsoft Windows 10=picassopi-fp5_1.0.0.e
Microsoft Windows Server 2012
Amd Ryzen 5 3450u Firmware=picassopi-fp5_1.0.0.e
Amd Ryzen 5 3450u
Amd Ryzen 3 3350u Firmware=picassopi-fp5_1.0.0.e
Amd Ryzen 3 3350u
Microsoft Windows 11=picassopi-fp5_1.0.0.e
Microsoft Windows Server 2008 R2
Microsoft Windows 10=renoirpi-fp6_1.0.0.9
Microsoft Windows 11
Amd Ryzen 9 4900hs Firmware=renoirpi-fp6_1.0.0.9
Amd Ryzen 9 4900hs
Amd Ryzen 7 4800hs Firmware=renoirpi-fp6_1.0.0.9
Amd Ryzen 7 4800hs
Microsoft Windows Server 2012=renoirpi-fp6_1.0.0.9
Microsoft Windows 10
Microsoft Windows Server 2019=renoirpi-fp6_1.0.0.9
Microsoft Windows 10
Microsoft Windows Server 2012=renoirpi-fp6_1.0.0.9
Microsoft Windows Server 2012
Amd Ryzen 7 4980u Firmware=renoirpi-fp6_1.0.0.9
Amd Ryzen 7 4980u
Microsoft Windows 11=renoirpi-fp6_1.0.0.9
Microsoft Windows Server 2012
Amd Ryzen 5 4600hs Firmware=renoirpi-fp6_1.0.0.9
Amd Ryzen 5 4600hs
Microsoft Windows 11=renoirpi-fp6_1.0.0.9
Microsoft Windows 11
Microsoft Windows Server 2012 R2=renoirpi-fp6_1.0.0.9
Microsoft Windows Server 2016
Amd Ryzen 5 4680u Firmware=renoirpi-fp6_1.0.0.9
Amd Ryzen 5 4680u
Microsoft Windows Server 2012 R2=renoirpi-fp6_1.0.0.9
Microsoft Windows Server 2012
Amd Ryzen 9 5900hs Firmware=cezannepi-fp6_1.0.0.b
Amd Ryzen 9 5900hs
Amd Ryzen 9 5900hx Firmware=cezannepi-fp6_1.0.0.b
Amd Ryzen 9 5900hx
Amd Ryzen 9 5980hx Firmware=cezannepi-fp6_1.0.0.b
Amd Ryzen 9 5980hx
Amd Ryzen 9 5980hs Firmware=cezannepi-fp6_1.0.0.b
Amd Ryzen 9 5980hs
Amd Ryzen 7 5800h Firmware=cezannepi-fp6_1.0.0.b
Amd Ryzen 7 5800h
Amd Ryzen 7 5800hs Firmware=cezannepi-fp6_1.0.0.b
Amd Ryzen 7 5800hs
Amd Ryzen 7 5825u Firmware=cezannepi-fp6_1.0.0.b
Amd Ryzen 7 5825u
Amd Ryzen 7 5800u Firmware=cezannepi-fp6_1.0.0.b
Amd Ryzen 7 5800u
Amd Ryzen 5 5600h Firmware=cezannepi-fp6_1.0.0.b
Amd Ryzen 5 5600h
Amd Ryzen 5 5600hs Firmware=cezannepi-fp6_1.0.0.b
Amd Ryzen 5 5600hs
Amd Ryzen 5 5625u Firmware=cezannepi-fp6_1.0.0.b
Amd Ryzen 5 5625u
Amd Ryzen 5 5600u Firmware=cezannepi-fp6_1.0.0.b
Amd Ryzen 5 5600u
Amd Ryzen 5 5560u Firmware=cezannepi-fp6_1.0.0.b
Amd Ryzen 5 5560u
Amd Ryzen 5 5500h Firmware=cezannepi-fp6_1.0.0.b
Amd Ryzen 5 5500h
Amd Ryzen 3 5425u Firmware=cezannepi-fp6_1.0.0.b
Amd Ryzen 3 5425u
Amd Ryzen 3 5400u Firmware=cezannepi-fp6_1.0.0.b
Amd Ryzen 3 5400u
Amd Ryzen 3 5125c Firmware=cezannepi-fp6_1.0.0.b
Amd Ryzen 3 5125c
Amd Ryzen 9 6900hs Firmware=rembrandtpi-fp7_1.0.0.2
Amd Ryzen 9 6900hs
Amd Ryzen 9 6900hx Firmware=rembrandtpi-fp7_1.0.0.2
Amd Ryzen 9 6900hx
Amd Ryzen 9 6980hx Firmware=rembrandtpi-fp7_1.0.0.2
Amd Ryzen 9 6980hx
Amd Ryzen 9 6980hs Firmware=rembrandtpi-fp7_1.0.0.2
Amd Ryzen 9 6980hs
Amd Ryzen 7 6800h Firmware=rembrandtpi-fp7_1.0.0.2
Amd Ryzen 7 6800h
Amd Ryzen 7 6800hs Firmware=rembrandtpi-fp7_1.0.0.2
Amd Ryzen 7 6800hs
Amd Ryzen 7 6800u Firmware=rembrandtpi-fp7_1.0.0.2
Amd Ryzen 7 6800u
Amd Ryzen 5 6600h Firmware=rembrandtpi-fp7_1.0.0.2
Amd Ryzen 5 6600h
Amd Ryzen 5 6600hs Firmware=rembrandtpi-fp7_1.0.0.2
Amd Ryzen 5 6600hs
Amd Ryzen 5 6600u Firmware=rembrandtpi-fp7_1.0.0.2
Amd Ryzen 5 6600u
Microsoft Windows Server 2019=rembrandtpi-fp7_1.0.0.2
Microsoft Windows Server 2016
Microsoft Windows Server 2019=rembrandtpi-fp7_1.0.0.2
Microsoft Windows Server 2008
Microsoft Windows Server 2022=rembrandtpi-fp7_1.0.0.2
Microsoft Windows Server 2008 R2
Microsoft Windows 11=rembrandtpi-fp7_1.0.0.2
Microsoft Windows Server 2022
Microsoft Windows 10=rembrandtpi-fp7_1.0.0.2
Microsoft Windows Server 2019
Microsoft Windows Server 2022=rembrandtpi-fp7_1.0.0.2
Microsoft Azure Virtual Machines

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2023 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203