Description
An out of bounds read in the remote management firmware could allow a privileged attacker read a limited section of memory outside of established bounds potentially resulting in loss of confidentiality or availability.
CVSS breakdown
CVSS 4.0
Attack Vector
Local
Attack Complexity
High
Attack Requirements
None
Privileges Required
High
User Interaction
None
Confidentiality (Vulnerable System)
Low
Integrity (Vulnerable System)
None
Availability (Vulnerable System)
Low
Confidentiality (Subsequent System)
None
Integrity (Subsequent System)
None
Availability (Subsequent System)
None
Affected products
- AMD / AMD Instinct™ MI300ANo fix planned – No fix planned
- AMD / AMD Instinct™ MI300XNo fix planned – No fix planned
- AMD / AMD Instinct™ MI308XNo fix planned – No fix planned
- AMD / AMD Instinct™ MI325XNo fix planned – No fix planned