TOCTOU in the ASP Bootloader may allow an attacker with physical access to tamper with SPI ROM records after memory content verification, potentially leading to loss of confidentiality or a denial of service.
AI analysis not yet available
Plain-English explanation, risk summary, and remediation steps will appear here once AI analysis is complete.
No Fix Known
No patch has been released yet. Apply workarounds or mitigations where available.
| Vendor | Product | Versions | Fixed In |
|---|---|---|---|
| amd | epyc_7001_firmware | naplespi_1.0.0.h | - |
| amd | epyc_7251_firmware | naplespi_1.0.0.h | - |
| amd | epyc_7261_firmware |
Published
CVE disclosed publicly
Last Modified
Most recent update
Indexed to CVEInsight
Added to this platform
AV:P/AC:H/PR:H/UI:N/S:C/C:L/I:N/A:L
93
Affected Products
6
References
amd / epyc_7001_firmware
| naplespi_1.0.0.h |
| - |
| amd | epyc_7281_firmware | naplespi_1.0.0.h | - |
| amd | epyc_7301_firmware | naplespi_1.0.0.h | - |
| amd | epyc_7351_firmware | naplespi_1.0.0.h | - |
| amd | epyc_7351p_firmware | naplespi_1.0.0.h | - |
| amd | epyc_7371_firmware | naplespi_1.0.0.h | - |
| amd | epyc_7401_firmware | naplespi_1.0.0.h | - |
| amd | epyc_7401p_firmware | naplespi_1.0.0.h | - |
| amd | epyc_7451_firmware | naplespi_1.0.0.h | - |
| amd | epyc_7501_firmware | naplespi_1.0.0.h | - |
| amd | epyc_7551_firmware | naplespi_1.0.0.h | - |
| amd | epyc_7551p_firmware | naplespi_1.0.0.h | - |
| amd | epyc_7601_firmware | naplespi_1.0.0.h | - |
| amd | epyc_7232p_firmware | romepi_1.0.0.d | - |
| amd | epyc_7252_firmware | romepi_1.0.0.d | - |
| amd | epyc_7262_firmware | romepi_1.0.0.d | - |
| amd | epyc_7272_firmware | romepi_1.0.0.d | - |
| amd | epyc_7282_firmware | romepi_1.0.0.d | - |
| amd | epyc_7302_firmware | romepi_1.0.0.d | - |
| amd | epyc_7302p_firmware | romepi_1.0.0.d | - |
| amd | epyc_7352_firmware | romepi_1.0.0.d | - |
| amd | epyc_7402_firmware | romepi_1.0.0.d | - |
| amd | epyc_7402p_firmware | romepi_1.0.0.d | - |
| amd | epyc_7452_firmware | romepi_1.0.0.d | - |
| amd | epyc_7502_firmware | romepi_1.0.0.d | - |
| amd | epyc_7502p_firmware | romepi_1.0.0.d | - |
| amd | epyc_7532_firmware | romepi_1.0.0.d | - |
| amd | epyc_7542_firmware | romepi_1.0.0.d | - |
| amd | epyc_7552_firmware | romepi_1.0.0.d | - |
| amd | epyc_7642_firmware | romepi_1.0.0.d | - |
| amd | epyc_7662_firmware | romepi_1.0.0.d | - |
| amd | epyc_7702_firmware | romepi_1.0.0.d | - |
| amd | epyc_7702p_firmware | romepi_1.0.0.d | - |
| amd | epyc_7742_firmware | romepi_1.0.0.d | - |
| amd | epyc_7f32_firmware | romepi_1.0.0.d | - |
| amd | epyc_7f52_firmware | romepi_1.0.0.d | - |
| amd | epyc_7f72_firmware | romepi_1.0.0.d | - |
| amd | epyc_7h12_firmware | romepi_1.0.0.d | - |
| amd | epyc_7763_firmware | milanpi_1.0.0.7 | - |
| amd | epyc_7713p_firmware | milanpi_1.0.0.7 | - |
| amd | epyc_7713_firmware | milanpi_1.0.0.7 | - |
| amd | epyc_7663p_firmware | milanpi_1.0.0.7 | - |
| amd | epyc_7663_firmware | milanpi_1.0.0.7 | - |
| amd | epyc_7643p_firmware | milanpi_1.0.0.7 | - |
| amd | epyc_7773x_firmware | milanpi_1.0.0.7 | - |
| amd | epyc_7643_firmware | milanpi_1.0.0.7 | - |
| amd | epyc_7573x_firmware | milanpi_1.0.0.7 | - |
| amd | epyc_75f3_firmware | milanpi_1.0.0.7 | - |
| amd | epyc_7543p_firmware | milanpi_1.0.0.7 | - |
| amd | epyc_7543_firmware | milanpi_1.0.0.7 | - |
| amd | epyc_7513_firmware | milanpi_1.0.0.7 | - |
| amd | epyc_7473x_firmware | milanpi_1.0.0.7 | - |
| amd | epyc_7453_firmware | milanpi_1.0.0.7 | - |
| amd | epyc_74f3_firmware | milanpi_1.0.0.7 | - |
| amd | epyc_7443p_firmware | milanpi_1.0.0.7 | - |
| amd | epyc_7443_firmware | milanpi_1.0.0.7 | - |
| amd | epyc_7413_firmware | milanpi_1.0.0.7 | - |
| amd | epyc_7373x_firmware | milanpi_1.0.0.7 | - |
| amd | epyc_73f3_firmware | milanpi_1.0.0.7 | - |
| amd | epyc_7343_firmware | milanpi_1.0.0.7 | - |
| amd | epyc_7313p_firmware | milanpi_1.0.0.7 | - |
| amd | epyc_7313_firmware | milanpi_1.0.0.7 | - |
| amd | epyc_7303p_firmware | milanpi_1.0.0.7 | - |
| amd | epyc_7303_firmware | milanpi_1.0.0.7 | - |
| amd | epyc_72f3_firmware | milanpi_1.0.0.7 | - |
| amd | epyc_7203p_firmware | milanpi_1.0.0.7 | - |
| amd | epyc_7203_firmware | milanpi_1.0.0.7 | - |
| amd | athlon_pro_300ge_firmware | - | - |
| amd | athlon_gold_pro_3150ge_firmware | - | - |
| amd | athlon_gold_3150g_firmware | - | - |
| amd | athlon_gold_pro_3150g_firmware | - | - |
| amd | ryzen_threadripper_2990wx_firmware | summitpi-sp3r2_1.1.0.6 | - |
| amd | ryzen_threadripper_2970wx_firmware | summitpi-sp3r2_1.1.0.6 | - |
| amd | ryzen_threadripper_2950x_firmware | summitpi-sp3r2_1.1.0.6 | - |
| amd | ryzen_threadripper_2920x_firmware | summitpi-sp3r2_1.1.0.6 | - |
| amd | ryzen_7_3780u_firmware | picassopi-fp5_1.0.0.e | - |
| amd | ryzen_7_3750h_firmware | picassopi-fp5_1.0.0.e | - |
| amd | ryzen_7_3700c_firmware | picassopi-fp5_1.0.0.e | - |
| amd | ryzen_7_3700u_firmware | picassopi-fp5_1.0.0.e | - |
| amd | ryzen_5_3580u_firmware | picassopi-fp5_1.0.0.e | - |
| amd | ryzen_5_3550h_firmware | picassopi-fp5_1.0.0.e | - |
| amd | ryzen_5_3500c_firmware | picassopi-fp5_1.0.0.e | - |
| amd | ryzen_5_3500u_firmware | picassopi-fp5_1.0.0.e | - |
| amd | ryzen_5_3450u_firmware | picassopi-fp5_1.0.0.e | - |
| amd | ryzen_3_3350u_firmware | picassopi-fp5_1.0.0.e | - |
| amd | ryzen_3_3300u_firmware | picassopi-fp5_1.0.0.e | - |
| amd | ryzen_3_3250u_firmware | picassopi-fp5_1.0.0.e | - |
| amd | ryzen_3_3250c_firmware | picassopi-fp5_1.0.0.e | - |
| amd | ryzen_3_3200u_firmware | picassopi-fp5_1.0.0.e | - |
| amd | amd_3015e_firmware | pollockpi-ft5_1.0.0.4 | - |
| amd | amd_3015ce_firmware | pollockpi-ft5_1.0.0.4 | - |
CVSS:3.1/AV:P/AC:H/PR:H/UI:N/S:C/C:L/I:N/A:L
Exploitability
Impact