• CVE-2023-20579

发布时间: 2024年5月27日

修改时间: 2024年11月30日

概要

Improper Access Control in the AMD SPI protection feature may allow a user with Ring0 (kernel mode) privileged access to bypass protections potentially resulting in loss of integrity and availability.

CVSS v3 指标

NVD openEuler
Confidentiality None
Attack Vector Local
CVSS评分 6.0 0.0
Attack Complexity Low
Privileges Required High
Scope Unchanged
Integrity High
User Interaction None
Availability High

安全公告

公告名 概要 发布时间
KylinSec-SA-2024-2211 Improper Access Control in the AMD SPI protection feature may allow a user with Ring0 (kernel mode) privileged access to bypass protections potentially resulting in loss of integrity and availability. 2024年5月27日

影响产品

产品 状态
KY3.4-4A linux-firmware Unaffected
KY3.4-5 linux-firmware Unaffected
KY3.5.1 linux-firmware Unaffected
KY3.5.2 linux-firmware Unaffected