CyberzSOC

Publication detail
← Back to advisories & guidance

2024-075: Vulnerabilities in AMD CPUs ↗ source

August 12, 2024 CERT-EU Advisory

Summary

OnAugust9,2024,AMDdisclosedahigh-severityvulnerability,CVE-2023-31315(SinkClose), affecting multiple generations of EPYC, Ryzen, and Threadripper processors. The flaw allows attackers with kernel-level access to gain Ring-2 privileges, potentially installing undetectable malware by modifying System Management Mode (SMM) settings [1]. The SinkClose vulnerability (CVSS score: 7.5) enables privilege escalation to Ring-2, allowing attackers to modify SMM settings even with SMM Lock enabled. This can disable security features and facilitate persistent, nearly undetectable malware. According to AMD’s advisory, the following models are affected [1]: CERT-EU recommends applying AMD’s available mitigations immediately [2].

News Coverage

No coverage found in monitored research blogs or news feeds.

CVEs Referenced in This Publication

CVECVSSAffected
CVE-2023-31315 6.8 Medium AMD 3rd Gen AMD EPYC™ Processors Improper validation in a model specific register (MSR) could allow a malicious program with ring0 access to modify SMM configuration while SMI lock i…

Extracted from the publication text. Each CVE links to its tracked detail page.

Vendors Named in This Publication

No KEV-catalogued vendors are named in this publication.