Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4c4q-g449-2566

Опубликовано: 11 июн. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

Improper input validation for DIMM serial presence detect (SPD) metadata could allow an attacker with physical access, ring0 access on a system with a non-compliant DIMM, or control over the Root of Trust for BIOS update, to potentially overwrite guest memory resulting in loss of guest data integrity.

Improper input validation for DIMM serial presence detect (SPD) metadata could allow an attacker with physical access, ring0 access on a system with a non-compliant DIMM, or control over the Root of Trust for BIOS update, to potentially overwrite guest memory resulting in loss of guest data integrity.

EPSS

Процентиль: 13%
0.00222
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 5.3
nvd
около 2 месяцев назад

Improper input validation for DIMM serial presence detect (SPD) metadata could allow an attacker with physical access, ring0 access on a system with a non-compliant DIMM, or control over the Root of Trust for BIOS update, to potentially overwrite guest memory resulting in loss of guest data integrity.

CVSS3: 5.3
redos
около 1 года назад

Уязвимость linux-firmware

CVSS3: 5.3
fstec
больше 1 года назад

Уязвимость микропрограммного обеспечения процессоров безопасности AMD Secure Processor (ASP), связанная с неправильной проверкой входных данных, позволяющая нарушителю повысить свои привилегия

EPSS

Процентиль: 13%
0.00222
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-20