Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rw97-q7v4-xhhq

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.5

Описание

An information disclosure vulnerability exists in AMD Platform Security Processor (PSP) chipset driver. The discretionary access control list (DACL) may allow low privileged users to open a handle and send requests to the driver resulting in a potential data leak from uninitialized physical pages.

An information disclosure vulnerability exists in AMD Platform Security Processor (PSP) chipset driver. The discretionary access control list (DACL) may allow low privileged users to open a handle and send requests to the driver resulting in a potential data leak from uninitialized physical pages.

EPSS

Процентиль: 31%
0.00116
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-269
CWE-909

Связанные уязвимости

CVSS3: 5.5
nvd
больше 4 лет назад

An information disclosure vulnerability exists in AMD Platform Security Processor (PSP) chipset driver. The discretionary access control list (DACL) may allow low privileged users to open a handle and send requests to the driver resulting in a potential data leak from uninitialized physical pages.

EPSS

Процентиль: 31%
0.00116
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-269
CWE-909