CVE-2024-36347
Awaiting Analysis Awaiting Analysis - Queue
BaseFortify

Publication date: 2025-06-27

Last updated on: 2025-06-30

Assigner: Advanced Micro Devices Inc.

Description
Improper signature verification in AMD CPU ROM microcode patch loader may allow an attacker with local administrator privilege to load malicious microcode, potentially resulting in loss of integrity of x86 instruction execution, loss of confidentiality and integrity of data in x86 CPU privileged context and compromise of SMM execution environment.
CVSS Scores
EPSS Scores
Probability:
Percentile:
Meta Information
Published
2025-06-27
Last Modified
2025-06-30
Generated
2026-05-07
AI Q&A
2025-06-28
EPSS Evaluated
2026-05-05
NVD
EUVD
Affected Vendors & Products
Currently, no data is known.
Helpful Resources
Exploitability
CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-347 The product does not verify, or incorrectly verifies, the cryptographic signature for data.
Attack-Flow Graph
AI Powered Q&A
How can this vulnerability impact me? :

The vulnerability can lead to loss of integrity of CPU instruction execution and compromise the confidentiality and integrity of data processed in the CPU's privileged context. It may also compromise the System Management Mode (SMM) execution environment, potentially allowing attackers to execute malicious code at a very high privilege level, which can severely impact system security and stability.


Can you explain this vulnerability to me?

This vulnerability involves improper signature verification in the AMD CPU ROM microcode patch loader. It may allow an attacker who already has local administrator privileges to load malicious microcode onto the CPU. This malicious microcode can compromise the integrity of x86 instruction execution and affect the confidentiality and integrity of data within the CPU's privileged context, including the System Management Mode (SMM) execution environment.


Ask Our AI Assistant
Need more information? Ask your question to get an AI reply (Powered by our expertise)
0/70
EPSS Chart