CVE-2025-48516: Medium severity AMD AGESA Bootloader Firmware vulnerability
Insecure default configuration state of DDR5 memory module by AGESA Bootloader Firmware could allow an attacker with local user privilege to abuse the unprotected PMIC interface to create a permanent denial of service condition or affect the integrity of the memory module.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-48516?
CVE-2025-48516 is considered a critical vulnerability due to its potential to create a permanent denial of service condition.
How do I fix CVE-2025-48516?
To fix CVE-2025-48516, ensure that the AMD AGESA Bootloader Firmware is configured securely and updated to the latest version provided by AMD.
Who is affected by CVE-2025-48516?
CVE-2025-48516 affects systems utilizing the AMD AGESA Bootloader Firmware that are configured with insecure default settings.
What could happen if CVE-2025-48516 is exploited?
If CVE-2025-48516 is exploited, it could allow an attacker to create a permanent denial of service or compromise the integrity of the memory module.
Is remote access required to exploit CVE-2025-48516?
No, CVE-2025-48516 requires local user privileges to exploit the vulnerability.