Security Advisory

CVE-2020-12890

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-12-10 21:56:55
Last updated 2024-09-16 23:36:11
Assigner AMD
State PUBLISHED

Description

Improper handling of pointers in the System Management Mode (SMM) handling code may allow for a privileged attacker with physical or administrative access to potentially manipulate the AMD Generic Encapsulated Software Architecture (AGESA) to execute arbitrary code undetected by the operating system.