Beveiligingsadvies

CVE-2020-12890

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2021-12-10 21:56:55
Laatst bijgewerkt 2024-09-16 23:36:11
Toegewezen door AMD
CVSS-score geen score
Status PUBLISHED

Beschrijving

Improper handling of pointers in the System Management Mode (SMM) handling code may allow for a privileged attacker with physical or administrative access to potentially manipulate the AMD Generic Encapsulated Software Architecture (AGESA) to execute arbitrary code undetected by the operating system.