7.5
CVSSv3

CVE-2020-12965

Published: 04/02/2022 Updated: 06/12/2023
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

When combined with specific software sequences, AMD CPUs may transiently execute non-canonical loads and store using only the lower 48 address bits potentially resulting in data leakage.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

amd ryzen pro 5650g firmware -

amd ryzen pro 5650ge firmware -

amd ryzen pro 5750g firmware -

amd ryzen pro 5750ge firmware -

amd ryzen pro 5350g firmware -

amd ryzen pro 5350ge firmware -

amd ryzen pro 4750g firmware -

amd ryzen pro 4750ge firmware -

amd ryzen pro 4650g firmware -

amd ryzen pro 4650ge firmware -

amd ryzen pro 4350g firmware -

amd ryzen pro 4350ge firmware -

amd ryzen pro 3900 firmware -

amd ryzen pro 3700 firmware -

amd ryzen pro 3600 firmware -

amd ryzen pro 3400g firmware -

amd ryzen pro 3400ge firmware -

amd ryzen pro 3350g firmware -

amd ryzen pro 3200g firmware -

amd ryzen pro 3200ge firmware -

amd ryzen pro 2400g firmware -

amd ryzen pro 2400ge firmware -

amd ryzen pro 2200g firmware -

amd ryzen pro 2200ge firmware -

amd ryzen threadripper pro 3995wx firmware -

amd ryzen threadripper pro 3975wx firmware -

amd ryzen threadripper pro 3955wx firmware -

amd ryzen threadripper pro 3945wx firmware -

amd athlon gold pro 3150g firmware -

amd athlon gold pro 3150ge firmware -

amd athlon silver pro 3125ge firmware -

amd athlon pro 300ge firmware -

amd athlon pro 200ge firmware -

amd ryzen threadripper 3990x firmware -

amd ryzen threadripper 3970x firmware -

amd ryzen threadripper 3960x firmware -

amd ryzen threadripper 2990wx firmware -

amd ryzen threadripper 2970wx firmware -

amd ryzen threadripper 2950x firmware -

amd ryzen threadripper 2920x firmware -

amd ryzen threadripper 1950x firmware -

amd ryzen threadripper 1920x firmware -

amd ryzen threadripper 1900x firmware -

amd ryzen 5950x firmware -

amd ryzen 5800x3d firmware -

amd ryzen 5900x firmware -

amd ryzen 5800x firmware -

amd ryzen 5600x firmware -

amd ryzen 5700g firmware -

amd ryzen 5600g firmware -

amd ryzen 5700ge firmware -

amd ryzen 5600ge firmware -

amd ryzen 5300g firmware -

amd ryzen 5300ge firmware -

amd ryzen 4700g firmware -

amd ryzen 4600g firmware -

amd ryzen 4300g firmware -

amd ryzen 4700ge firmware -

amd ryzen 4600ge firmware -

amd ryzen 4300ge firmware -

amd athlon 3150ge firmware -

amd athlon 3150g firmware -

amd athlon 3050ge firmware -

Vendor Advisories

Description<!---->A flaw was found in AMD CPUs When combined with specific software sequences, AMD CPUs may transiently execute non-canonical loads and store using only the lower 48 address bits, potentially resulting in data leakageA flaw was found in AMD CPUs When combined with specific software sequences, AMD CPUs may transiently execute non- ...

Mailing Lists

A vulnerability in closed source CPUs which open source OSes may need to mitigate was disclosed today: wwwvusecnet/projects/slam/ githubcom/vusec/slam wwwyoutubecom/watch?v=y4wZ-tREaNk xcom/vu5ec/status/1732099516621521003 The first page lists these processors as affected: - Existing AMD CPUs vulnerable t ...

Recent Articles

Boffins find if you torture AMD Zen+, Zen 2 CPUs enough, they are vulnerable to Meltdown-like attack
The Register • Thomas Claburn in San Francisco • 30 Aug 2021

Get our weekly newsletter Chip biz's fix involves performance-inhibiting LFENCE, if warranted

Computer scientists at TU Dresden in Germany have found that AMD's Zen processor family is vulnerable to a data-bothering Meltdown-like attack after all. Exploiting this weakness is an academic exercise, it seems; there are more practical and easier ways for malware and malicious users to interfere with systems. If anything, it reminds us that modern CPU architectures have all kinds of side-channels, with some probably still left to find. In a paper [PDF] titled "Transient Execution of Non-Canon...