CNNVD-202602-1443 Information

CNNVD ID

CNNVD-202602-1443

CVE-2024-36310

  • CNNVD Published: 2026-02-10

Description (Chinese)

AMD Ryzen等都是美国超威半导体(AMD)公司的产品。AMD Ryzen是一款中央处理器(CPU)。AMD Ryzen Master是一款用于管理和调整 AMD Ryzen 处理器性能的软件工具。AMD Ryzen AI是一个 AMD 处理器中的 AI 加速单元(NPU)。 AMD多款产品存在安全漏洞,该漏洞源于输入验证不当,可能导致特权攻击者对SMRAM执行越界读取或写入,进而造成机密性或完整性丢失。以下产品受到影响:AMD EPYC™ 9004 Series Processors、AMD EPYC™ 9005 Series Processors、AMD Ryzen™ 6000 Series Processors with Radeon™ Graphics、AMD Ryzen™ 7040 Series Mobile Processors with Radeon™ Graphics、AMD Ryzen™ 7020 Series Processors with Radeon™ Graphics、AMD Ryzen™ 9000HX Series Mobile Processors、AMD Ryzen™ AI Max 300 Series Processors、AMD Ryzen™ AI 300 Series Processors等。

Description (English)

AMD Ryzen and others are products of the U.S. Supermassive Semiconductor (AMD). AMD Ryzen is a central processor (CPU). AMD Ryzen Master is a software tool for managing and adjusting AMD Ryzen processor performance. AMD Ryzen AI is an AI acceleration unit (NPU) in an AMD processor. There is a safety loophole in the AMD ’ s multiple products, which stems from inadequate input certification, which may result in the privileged assailant carrying out cross-border reading or writing of SMRAM, thereby leading to a loss of confidentiality or integrity. The following products have been affected: AMD EPYCTM 904 Series Documents, AMD EPYCTM 905 Series Projects, AMD RyzenTM 6000 Series Projects with RadeonTM Graphics, AMD RyzenTM 7040 Series Mobile Products with RadeonTM Services, AMD RyzenTM 7020 Series Services with RAdeonTM Grapsors, AMD RyzenTM 9000 Series Services Papers, AMD RyzenTM AI Max 300 Series Documents, AMD RyzenTM AI 300 Series Documents.

Vulnerability Type

其他

Affected Vendor

超微半导体

Published

2026-02-10

Last Modified

2026-02-24

References

https://www.amd.com/en/resources/product-security/bulletin/AMD-SB-3023.html https://www.amd.com/en/resources/product-security/bulletin/AMD-SB-4013.html https://www.amd.com/en/resources/product-security/bulletin/Emb-Auto.html

Patch

https://www.amd.com/en/resources/product-security/bulletin/AMD-SB-3023.html

Share on: