AMD: Patch your Ryzen and EPYC systems now as the company has just released a list of 31 new CPU Vulnerabilities

In a January update, AMD quietly disclosed 31 new CPU vulnerabilities spanning its Ryzen consumer chips and EPYC data centre processors. The vulnerability update also includes a list of AGESA versions, as well as mitigations for affected processors. AMD disclosed the flaws in a coordinated disclosure with several researchers, including teams from Google, Apple, and Oracle, giving the company time to develop mitigations before the public listings.

The interesting thing here is that AMD did not announce the vulnerabilities through a press release or other means, instead simply posting the lists. The list includes AGESA revisions that AMD has distributed to its OEMs in order to patch the vulnerabilities (AGESA code is used to build BIOS/UEFI code). The availability of new BIOS patches with the new AGESA code, on the other hand, will vary by vendor.

So its better if you with your motherboard or system vendor to see if new BIOS revisions with the correct AGESA code have been posted.

AMD says it typically releases vulnerability disclosures twice a year, in May and November, but chose to release some in January due to the relatively large number of new vulnerabilities and the timing of the mitigations. It is unclear whether there will be performance penalties, as with other mitigations such as Spectre and Meltdown.

H33WaYXNMC3NJjLJRqbKXh 1200 80 AMD: Patch your Ryzen and EPYC systems now as the company has just released a list of 31 new CPU Vulnerabilities
credit: AMD

Three new variants of the vulnerabilities affect the consumer-oriented Ryzen desktop PC, HEDT, Pro, and Mobile processors. One vulnerability is classified as high severity, while the other two are classified as medium or low severity.

These flaws can be exploited via BIOS hacks or an attack on the AMD Secure Processor (ASP) bootloader.

The flaws affect the Ryzen 2000-series Pinnacle Ridge desktop chips, as well as the 2000- and 5000-series APU product lines with integrated graphics (Raven Ridge, Cezanne). Furthermore, AMD’s Threadripper 2000- and 3000-series HEDT and Pro processors, as well as numerous Ryzen 2000-, 3000-, 5000-, 6000-, and Athlon 3000-series mobile processors, are affected.

AMD has also disclosed 28 EPYC processor vulnerabilities, four of which are of high severity. Three of the high-severity variants allow arbitrary code execution via various attack vectors, while another allows writing data to specific regions, which can result in data integrity and availability loss. Researchers also discovered 15 other medium-severity vulnerabilities and nine low-severity vulnerabilities.

Also Read:

Source

LEAVE A REPLY

Please enter your comment!
Please enter your name here

This site uses Akismet to reduce spam. Learn how your comment data is processed.

More like this

AMD FSR 4

AMD FSR 4 Co-Developed with Sony: Next-Gen Upscaling Unveiled

AMD FSR 4: AMD has officially confirmed that FSR 4, the latest version of its FidelityFX Super...
AMD Ryzen 9 X3D Processors Launched: Starts at $599

AMD Ryzen 9 X3D Processors Launched: Starts at $599

AMD Ryzen 9 X3D Processors Launched: Hold onto your keyboards, tech enthusiasts! AMD is about to drop...
AMD Confirms March 12 Launch for Ryzen 9 9900X3D & 9950X3D: Chinese Prices Leaked

AMD Confirms March 12 Launch for Ryzen 9 9900X3D...

AMD has officially announced the launch date for its highly anticipated Ryzen 9 9900X3D and 9950X3D processors....
AMD’s Medusa Point APUs May Stick with RDNA 3.X Instead of RDNA 4 or 5 – What It Means for Gamers

AMD’s Medusa Point APUs May Stick with RDNA 3.X...

AMD’s next-gen Medusa Point APUs, set to feature the powerful Zen 6 architecture, might not be upgrading...
AMD AERITH Plus SoC: A Powerhouse Upgrade for Steam Deck 2?

AMD AERITH Plus SoC: A Powerhouse Upgrade for Steam...

AMD is reportedly preparing a next-generation AERITH Plus SoC, designed to push the performance boundaries of handheld...

LATEST NEWS

Samsung Galaxy Z Flip 7 May Get Bigger Cover Screen, New Design

The upcoming Samsung Galaxy Z Flip 7 has been spotted in leaks and it brings some significant upgrades compared to its predecessor, the Galaxy...

Celebrity MasterChef Crowns Its Champion: Gaurav Khanna Sizzles to Victory

In the sizzling world of culinary competitions, where the heat of the kitchen meets the glitz of showbiz, Celebrity MasterChef has been serving up...

Tejasswi Prakash Rise to Stardom: From Unequal Treatment to Becoming Bollywood’s Bankable Star

In the glittering world of Bollywood, where dreams are woven into reality and stars are born overnight, Tejasswi Prakash's journey stands out as a...

Ranveer Allahbadia Legal Saga: BeerBiceps’ Brush with Assam Police Ignites Social Media Firestorm

In the ever-evolving landscape of Indian social media, where influencers reign supreme and controversy is never far behind, a storm has been brewing around...

Featured