CVE-2024-36357
Unknown Unknown - Not Provided
BaseFortify

Publication date: 2025-07-08

Last updated on: 2025-11-04

Assigner: Advanced Micro Devices Inc.

Description
A transient execution vulnerability in some AMD processors may allow an attacker to infer data in the L1D cache, potentially resulting in the leakage of sensitive information across privileged boundaries.
CVSS Scores
EPSS Scores
Probability:
Percentile:
Meta Information
Published
2025-07-08
Last Modified
2025-11-04
Generated
2026-05-07
AI Q&A
2025-07-08
EPSS Evaluated
2026-05-05
NVD
Affected Vendors & Products
Showing 17 associated CPEs
Vendor Product Version / Range
amd epyc siena
amd ryzen_threadripper *
amd epyc naples
amd epyc milan
amd ryzen 4000
amd ryzen 5000
amd ryzen 6000
amd epyc raphael
amd ryzen 3000
amd ryzen 7000
amd epyc genoa
amd ryzen 8000
amd embedded *
amd epyc rome
amd epyc bergamo
amd instinct_mi300a *
amd ryzen_threadripper_pro *
Helpful Resources
Exploitability
CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-UNKNOWN
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?

This vulnerability is a transient execution flaw in some AMD processors that may allow an attacker to infer data stored in the L1D cache. This could lead to leakage of sensitive information across privileged boundaries.


How can this vulnerability impact me? :

The vulnerability could allow an attacker with some level of local access to infer sensitive data from the processor's L1D cache, potentially exposing confidential information that should be protected by privilege levels.


Ask Our AI Assistant
Need more information? Ask your question to get an AI reply (Powered by our expertise)
0/70
EPSS Chart