5.5
CVSSv3

CVE-2020-12912

Published: 12/11/2020 Updated: 03/12/2020
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

A potential vulnerability in the AMD extension to Linux "hwmon" service may allow an malicious user to use the Linux-based Running Average Power Limit (RAPL) interface to show various side channel attacks. In line with industry partners, AMD has updated the RAPL interface to require privileged access.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

amd energy driver for linux

Vendor Advisories

A potential vulnerability in the AMD extension to Linux "hwmon" service may allow an attacker to use the Linux-based Running Average Power Limit (RAPL) interface to show various side channel attacks In line with industry partners, AMD has updated the RAPL interface to require privileged access ...

Github Repositories

SPDX-License-Identifier: GPL-20 Kernel driver amd_energy Supported chips: AMD Family 17h Processors: Model 30h AMD Family 19h Processors: Model 01h and 30h AMD Family 19h Processors: Model 01h and 10h Prefix: 'amd_energy' Addresses used: RAPL MSRs Datasheets: Processor Programming Reference (PPR) for AMD Family 17h Model 01h, Revision B1 Processors https: