SMM Callout vulnerability within the AmdCpmDisplayFeatureSMM driver could allow locally authenticated attackers to overwrite SMRAM, potentially resulting in arbitrary code execution.
Metrics
Affected Vendors & Products
References
History
Wed, 26 Feb 2025 01:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Title | kernel: hw:amd: SMM callout vulnerability within the AmdCpmDisplayFeatureSMM | |
Weaknesses | CWE-119 | |
References |
| |
Metrics |
threat_severity
|
threat_severity
|
Tue, 11 Feb 2025 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 11 Feb 2025 21:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | SMM Callout vulnerability within the AmdCpmDisplayFeatureSMM driver could allow locally authenticated attackers to overwrite SMRAM, potentially resulting in arbitrary code execution. | |
Weaknesses | CWE-20 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: AMD
Published: 2025-02-11T20:52:24.110Z
Updated: 2025-04-24T03:55:33.902Z
Reserved: 2023-12-27T16:06:35.776Z
Link: CVE-2024-0179

Updated: 2025-02-11T21:02:14.301Z

Status : Received
Published: 2025-02-11T21:15:12.280
Modified: 2025-02-11T21:15:12.280
Link: CVE-2024-0179
