CVE-2023-20518

Publication date

2024-08-13 16:52:55

Family

AMD

State

PUBLISHED

Description

Incomplete cleanup in the ASP may expose the Master Encryption Key (MEK) to a privileged attacker with access to the BIOS menu or UEFI shell and a memory exfiltration vulnerability, potentially resulting in loss of confidentiality.