CVE Published: 13/08/2024 |
CVE Updated: 19/08/2024 |
CVE Year: 2022 Source: AMD |
Vendor: AMD |
Product: AMD Athlon™ 3000 Series Desktop Processors with Radeon™ Graphics Status : PUBLISHED
CVE-2022-23815 Description
Improper bounds checking in APCB firmware may allow an attacker to perform an out of bounds write, corrupting the APCB entry, potentially leading to arbitrary code execution.
Metrics
CVSS Version: 3.1 |
Base Score: 7.5 HIGH Vector: CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H
l➤ Exploitability Metrics: Attack Vector (AV)* LOCAL Attack Complexity (AC)* HIGH Privileges Required (PR)* HIGH User Interaction (UI)* NONE Scope (S)* CHANGED
l➤ Impact Metrics: Confidentiality Impact (C)* HIGH Integrity Impact (I)* HIGH Availability Impact (A)* HIGH
Weakness Enumeration (CWE)
CWE-ID: CWE Name: Source: AMD
Common Attack Pattern Enumeration and Classification (CAPEC)