First published: Tue Feb 13 2024(Updated: )
Insufficient verification of data authenticity in the configuration state machine may allow a local attacker to potentially load arbitrary bitstreams.
Credit: psirt@amd.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Amd Alveo U50 | ||
Amd Alveo U50 Firmware | ||
All of | ||
AMD Alveo U200 | ||
AMD Alveo U200 | ||
All of | ||
AMD Alveo U250 | ||
AMD Alveo U250 | ||
All of | ||
AMD Alveo U280 Firmware | ||
Amd Alveo U280 Firmware | ||
All of | ||
Amd Kintex Ultrascale+ Ku3p Firmware | ||
Amd Kintex Ultrascale+ Ku3p | ||
All of | ||
Amd Kintex Ultrascale+ Ku5p Firmware | ||
Amd Kintex Ultrascale+ Ku5p | ||
All of | ||
Amd Kintex Ultrascale+ Ku9p Firmware | ||
Amd Kintex Ultrascale+ Ku9p | ||
All of | ||
Amd Kintex Ultrascale+ Ku11p Firmware | ||
Amd Kintex Ultrascale+ Ku11p | ||
All of | ||
Amd Kintex Ultrascale+ Ku13p Firmware | ||
Amd Kintex Ultrascale+ Ku13p | ||
All of | ||
Amd Kintex Ultrascale+ Ku15p Firmware | ||
AMD Kintex UltraScale+ Ku15P | ||
All of | ||
Amd Kintex Ultrascale+ Ku19p Firmware | ||
Amd Kintex Ultrascale+ Ku19p | ||
All of | ||
Amd Kintex Ultrascale Ku025 Firmware | ||
Amd Kintex Ultrascale Ku025 Firmware | ||
All of | ||
Amd Kintex Ultrascale Ku035 Firmware | ||
Amd Kintex Ultrascale Ku035 Firmware | ||
All of | ||
Amd Kintex Ultrascale Ku040 Firmware | ||
Amd Kintex Ultrascale Ku040 Firmware | ||
All of | ||
Amd Kintex Ultrascale Ku060 Firmware | ||
Amd Kintex Ultrascale Ku060 Firmware | ||
All of | ||
Amd Kintex Ultrascale Ku085 Firmware | ||
Amd Kintex Ultrascale Ku085 Firmware | ||
All of | ||
Amd Kintex Ultrascale Ku095 Firmware | ||
Amd Kintex Ultrascale Ku095 Firmware | ||
All of | ||
Amd Kintex Ultrascale Ku115 Firmware | ||
Amd Kintex Ultrascale Ku115 Firmware | ||
All of | ||
Amd Virtex Ultrascale Xcvu065 Firmware | ||
Amd Virtex Ultrascale Xcvu065 Firmware | ||
All of | ||
Amd Virtex Ultrascale Xcvu080 Firmware | ||
Amd Virtex Ultrascale Xcvu080 | ||
All of | ||
Amd Virtex Ultrascale Xcvu095 Firmware | ||
Amd Virtex Ultrascale Xcvu095 Firmware | ||
All of | ||
Amd Virtex Ultrascale Xcvu125 | ||
Amd Virtex Ultrascale Xcvu125 Firmware | ||
All of | ||
Amd Virtex Ultrascale Xcvu160 Firmware | ||
Amd Virtex Ultrascale Xcvu160 Firmware | ||
All of | ||
Amd Virtex Ultrascale Xcvu190 Firmware | ||
Amd Virtex Ultrascale Xcvu190 Firmware | ||
All of | ||
Amd Virtex Ultrascale Xcvu440 Firmware | ||
Amd Virtex Ultrascale Xcvu440 Firmware | ||
All of | ||
Amd Virtex Ultrascale+ Vu3p Firmware | ||
Amd Virtex Ultrascale+ Vu3p | ||
All of | ||
Amd Virtex Ultrascale+ Vu5p Firmware | ||
Amd Virtex Ultrascale+ Vu5p | ||
All of | ||
Amd Virtex Ultrascale+ Vu7p Firmware | ||
Amd Virtex Ultrascale+ Vu7p | ||
All of | ||
Amd Virtex Ultrascale+ Vu9p Firmware | ||
Amd Virtex Ultrascale+ Vu9p | ||
All of | ||
Amd Virtex Ultrascale+ Vu11p Firmware | ||
Amd Virtex Ultrascale+ Vu11p | ||
All of | ||
Amd Virtex Ultrascale+ Vu13p Firmware | ||
Amd Virtex Ultrascale+ Vu13p | ||
All of | ||
Amd Virtex Ultrascale+ Vu19p Firmware | ||
Amd Virtex Ultrascale+ Vu19p | ||
All of | ||
Amd Virtex Ultrascale+ Vu23p Firmware | ||
Amd Virtex Ultrascale+ Vu23p | ||
All of | ||
Amd Virtex Ultrascale+ Vu27p Firmware | ||
Amd Virtex Ultrascale+ Vu27p | ||
All of | ||
Amd Virtex Ultrascale+ Vu29p Firmware | ||
Amd Virtex Ultrascale+ Vu29p | ||
All of | ||
Amd Virtex Ultrascale+ Vu31p Firmware | ||
Amd Virtex Ultrascale+ Vu31p | ||
All of | ||
Amd Virtex Ultrascale+ Vu33p Firmware | ||
Amd Virtex Ultrascale+ Vu33p | ||
All of | ||
Amd Virtex Ultrascale+ Vu35p Firmware | ||
Amd Virtex Ultrascale+ Vu35p | ||
All of | ||
Amd Virtex Ultrascale+ Vu37p Firmware | ||
Amd Virtex Ultrascale+ Vu37p | ||
All of | ||
Amd Virtex Ultrascale+ Vu45p Firmware | ||
Amd Virtex Ultrascale+ Vu45p | ||
All of | ||
Amd Virtex Ultrascale+ Vu47p Firmware | ||
Amd Virtex Ultrascale+ Vu47p | ||
All of | ||
Amd Virtex Ultrascale+ Vu57p Firmware | ||
Amd Virtex Ultrascale+ Vu57p | ||
All of | ||
Amd Artix Ultrascale+ Au7p Firmware | ||
Amd Artix Ultrascale+ Au7p | ||
All of | ||
Amd Artix Ultrascale+ Au10p Firmware | ||
Amd Artix Ultrascale+ Au10p | ||
All of | ||
Amd Artix Ultrascale+ Au15p Firmware | ||
Amd Artix Ultrascale+ Au15p | ||
All of | ||
Amd Artix Ultrascale+ Au20p Firmware | ||
Amd Artix Ultrascale+ Au20p | ||
All of | ||
Amd Artix Ultrascale+ Au25p Firmware | ||
Amd Artix Ultrascale+ Au25p |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-20570 has a medium severity level due to insufficient verification of data authenticity.
To mitigate CVE-2023-20570, ensure that you are using a firmware version that addresses the vulnerability provided by AMD.
CVE-2023-20570 affects multiple AMD Alveo and Kintex Ultrascale firmware models.
CVE-2023-20570 may allow a local attacker to load arbitrary bitstreams due to insufficient verification.
Currently, the recommended approach is to apply firmware updates from AMD to address CVE-2023-20570.