CWE
369
Advisory Published
Updated

CVE-2023-20588: Speculative Leaks

First published: Tue Aug 08 2023(Updated: )

A division-by-zero error on some AMD processors can potentially return speculative data resulting in loss of confidentiality. 

Credit: psirt@amd.com psirt@amd.com psirt@amd.com

Affected SoftwareAffected VersionHow to fix
Microsoft Windows 10=21H2
Microsoft Windows 11=21H2
Microsoft Windows 10
Microsoft Windows Server 2012
Microsoft Windows Server 2022
Microsoft Windows 10=22H2
Microsoft Windows 10=22H2
Microsoft Windows 10=1809
Microsoft Windows 10
Microsoft Windows 11=22H2
Microsoft Windows 10=22H2
Microsoft Windows 11=23H2
Microsoft Windows 10=21H2
Microsoft Windows 10=1809
Microsoft Windows 10=1607
Microsoft Windows Server 2008 R2
Microsoft Windows 11=23H2
Microsoft Windows 10=21H2
Microsoft Windows Server 2019
Microsoft Windows Server 2008 R2
Microsoft Windows Server 2019
Microsoft Windows 10=1809
Microsoft Windows 11=22H2
Microsoft Windows 11=21H2
Microsoft Windows Server 2022
Microsoft Windows Server 2012
Microsoft Windows 10=1607
Microsoft Windows Server 2022, 23H2 Edition
Microsoft Windows Server 2012 R2
Microsoft Windows Server 2012 R2
Apple Webkit
Microsoft Power Platform
Microsoft Azure Logic Apps
Microsoft Windows
Adobe Prelude
Adobe Illustrator
Adobe InDesign
Adobe Dimension
Adobe Experience Manager
Adobe Substance3D Stager
Adobe Substance3D Sampler
Adobe Substance3D After Effects
Adobe Substance3D Designer
Google Android
SAP Business Technology Platform (SAP BTP)
Atlassian Bamboo
Atlassian Bitbucket
Atlassian JIRA
Atlassian Confluence Data Center
Atlassian Confluence Server
Cisco Apache Struts
VMware Workspace ONE Launcher
FortiGuard FortiOS
FortiGuard FortiPAM HTTPSd daemon
Microsoft Windows Server 2008
Microsoft Windows Server 2016
Microsoft Windows Server 2016
Debian Debian Linux=11.0
Debian Debian Linux=12.0
Amd Epyc 7351p Firmware
Amd Epyc 7351p
Amd Epyc 7401p Firmware
Amd Epyc 7401p
Amd Epyc 7551p Firmware
Amd Epyc 7551p
Amd Epyc 7251 Firmware
Amd Epyc 7251
Amd Epyc 7261 Firmware
Amd Epyc 7261
Amd Epyc 7281 Firmware
Amd Epyc 7281
Amd Epyc 7301 Firmware
Amd Epyc 7301
Amd Epyc 7351 Firmware
Amd Epyc 7351
Amd Epyc 7371 Firmware
Amd Epyc 7371
Amd Epyc 7401 Firmware
Amd Epyc 7401
Amd Epyc 7451 Firmware
Amd Epyc 7451
Amd Epyc 7501 Firmware
Amd Epyc 7501
Amd Epyc 7551 Firmware
Amd Epyc 7551
Amd Epyc 7571 Firmware
Amd Epyc 7571
Amd Epyc 7601 Firmware
Amd Epyc 7601
Amd Ryzen 5 Pro 3400g Firmware
Amd Ryzen 5 Pro 3400g
Amd Ryzen 5 3400g Firmware
Amd Ryzen 5 3400g
Amd Ryzen 5 Pro 3400ge Firmware
Amd Ryzen 5 Pro 3400ge
Amd Ryzen 5 Pro 3350g Firmware
Amd Ryzen 5 Pro 3350g
Amd Ryzen 5 Pro 3350ge Firmware
Amd Ryzen 5 Pro 3350ge
Amd Ryzen 3 Pro 3200g Firmware
Amd Ryzen 3 Pro 3200g
Amd Ryzen 3 3200g Firmware
Amd Ryzen 3 3200g
Amd Ryzen 3 3200ge Firmware
Amd Ryzen 3 3200ge
Amd Ryzen 3 Pro 3200ge Firmware
Amd Ryzen 3 Pro 3200ge
Amd Athlon Pro 300ge Firmware
Amd Athlon Pro 300ge
Amd Athlon Gold 3150ge Firmware
Amd Athlon Gold 3150ge
Amd Athlon Gold Pro 3150ge Firmware
Amd Athlon Gold Pro 3150ge
Amd Athlon Gold 3150g Firmware
Amd Athlon Gold 3150g
Amd Athlon Gold Pro 3150g Firmware
Amd Athlon Gold Pro 3150g
Amd Athlon Silver 3050ge Firmware
Amd Athlon Silver 3050ge
Amd Athlon Silver Pro 3125ge Firmware
Amd Athlon Silver Pro 3125ge
Microsoft Windows Server 2008
Microsoft Windows Server 2008
Microsoft Windows Server 2008
Debian Debian Linux=10.0
All of
Amd Epyc 7351p Firmware
Amd Epyc 7351p
All of
Amd Epyc 7401p Firmware
Amd Epyc 7401p
All of
Amd Epyc 7551p Firmware
Amd Epyc 7551p
All of
Amd Epyc 7251 Firmware
Amd Epyc 7251
All of
Amd Epyc 7261 Firmware
Amd Epyc 7261
All of
Amd Epyc 7281 Firmware
Amd Epyc 7281
All of
Amd Epyc 7301 Firmware
Amd Epyc 7301
All of
Amd Epyc 7351 Firmware
Amd Epyc 7351
All of
Amd Epyc 7371 Firmware
Amd Epyc 7371
All of
Amd Epyc 7401 Firmware
Amd Epyc 7401
All of
Amd Epyc 7451 Firmware
Amd Epyc 7451
All of
Amd Epyc 7501 Firmware
Amd Epyc 7501
All of
Amd Epyc 7551 Firmware
Amd Epyc 7551
All of
Amd Epyc 7571 Firmware
Amd Epyc 7571
All of
Amd Epyc 7601 Firmware
Amd Epyc 7601
All of
Amd Ryzen 5 Pro 3400g Firmware
Amd Ryzen 5 Pro 3400g
All of
Amd Ryzen 5 3400g Firmware
Amd Ryzen 5 3400g
All of
Amd Ryzen 5 Pro 3400ge Firmware
Amd Ryzen 5 Pro 3400ge
All of
Amd Ryzen 5 Pro 3350g Firmware
Amd Ryzen 5 Pro 3350g
All of
Amd Ryzen 5 Pro 3350ge Firmware
Amd Ryzen 5 Pro 3350ge
All of
Amd Ryzen 3 Pro 3200g Firmware
Amd Ryzen 3 Pro 3200g
All of
Amd Ryzen 3 3200g Firmware
Amd Ryzen 3 3200g
All of
Amd Ryzen 3 3200ge Firmware
Amd Ryzen 3 3200ge
All of
Amd Ryzen 3 Pro 3200ge Firmware
Amd Ryzen 3 Pro 3200ge
All of
Amd Athlon Pro 300ge Firmware
Amd Athlon Pro 300ge
All of
Amd Athlon Gold 3150ge Firmware
Amd Athlon Gold 3150ge
All of
Amd Athlon Gold Pro 3150ge Firmware
Amd Athlon Gold Pro 3150ge
All of
Amd Athlon Gold 3150g Firmware
Amd Athlon Gold 3150g
All of
Amd Athlon Gold Pro 3150g Firmware
Amd Athlon Gold Pro 3150g
All of
Amd Athlon Silver 3050ge Firmware
Amd Athlon Silver 3050ge
All of
Amd Athlon Silver Pro 3125ge Firmware
Amd Athlon Silver Pro 3125ge
Xen Xen
Fedoraproject Fedora=37
Fedoraproject Fedora=38
Fedoraproject Fedora=39
Microsoft Windows 10 1507<10.0.10240.20345
Microsoft Windows 10 1607<10.0.14393.6529
Microsoft Windows 10 1809<10.0.17763.5206
Microsoft Windows 10 21h2<10.0.19044.3803
Microsoft Windows 10 22h2<10.0.19045.3803
Microsoft Windows 11 21h2<10.0.22000.2652
Microsoft Windows 11 22h2<10.0.22621.2861
Microsoft Windows 11 23h2<10.0.22631.2861
Microsoft Windows Server 2008=sp2
Microsoft Windows Server 2008=r2-sp1
Microsoft Windows Server 2012
Microsoft Windows Server 2012=r2
Microsoft Windows Server 2016<10.0.14393.6529
Microsoft Windows Server 2019<10.0.17763.5206
Microsoft Windows Server 2022 23h2<10.0.25398.584
debian/linux
5.10.223-1
5.10.226-1
6.1.115-1
6.1.119-1
6.12.5-1
debian/xen<=4.14.6-1<=4.14.5+94-ge49571868d-1
4.17.3+10-g091466ba55-1~deb12u1
4.17.3+36-g54dacb5c02-1

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Reference Links

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2024 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203