CVE-2019-9836
Published Jun 25, 2019
Last updated 3 years ago
Overview
- Description
- Secure Encrypted Virtualization (SEV) on Advanced Micro Devices (AMD) Platform Security Processor (PSP; aka AMD Secure Processor or AMD-SP) 0.17 build 11 and earlier has an insecure cryptographic implementation.
- Source
- cve@mitre.org
- NVD status
- Analyzed
Risk scores
CVSS 3.1
- Type
- Primary
- Base score
- 5.3
- Impact score
- 1.4
- Exploitability score
- 3.9
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
- Severity
- MEDIUM
CVSS 2.0
- Type
- Primary
- Base score
- 5
- Impact score
- 2.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:N/A:N
Weaknesses
- nvd@nist.gov
- CWE-327
Social media
- Hype score
- Not currently trending
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:amd:secure_encrypted_virtualization_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BA3DA196-4268-4B60-865B-DEB212FCD098", "versionEndIncluding": "0.17b11" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:amd:epyc_7251:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "565383C4-F690-4E3B-8A6A-B7D4ACCFAA05" }, { "criteria": "cpe:2.3:h:amd:epyc_7261:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "71ED05E6-8E69-41B9-9A36-CCE2D59A2603" }, { "criteria": "cpe:2.3:h:amd:epyc_7281:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "805B4FEA-CFB2-429C-818B-9277B6D546C3" }, { "criteria": "cpe:2.3:h:amd:epyc_7301:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "F65FC5B9-0803-4D7F-8EF6-7B6681418596" }, { "criteria": "cpe:2.3:h:amd:epyc_7351:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "8A5FC951-9FAD-45B4-B7CF-D1A9482507F5" }, { "criteria": "cpe:2.3:h:amd:epyc_7351p:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "9BB78361-9AAD-44BD-8B30-65715FEA4C06" }, { "criteria": "cpe:2.3:h:amd:epyc_7371:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "FA7576CB-A818-47A1-9A0D-6B8FD105FF08" }, { "criteria": "cpe:2.3:h:amd:epyc_7401:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "C05F1EF0-3576-4D47-8704-36E9FAB1D432" }, { "criteria": "cpe:2.3:h:amd:epyc_7401p:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "A2E41A87-7A39-4BB2-88E4-16DF0D81BFD2" }, { "criteria": "cpe:2.3:h:amd:epyc_7451:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "51C8CF00-8FC8-4206-9028-6F104699DE76" }, { "criteria": "cpe:2.3:h:amd:epyc_7501:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "4E8BAB73-6F45-49AB-8F00-49A488006F3E" }, { "criteria": "cpe:2.3:h:amd:epyc_7551:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "1AAB403A-5A36-4DC3-A187-99127CF77BA7" }, { "criteria": "cpe:2.3:h:amd:epyc_7551p:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "01BE5D42-1C62-4381-89E0-8F3264F696EC" }, { "criteria": "cpe:2.3:h:amd:epyc_7601:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "168076CD-1E6D-4328-AB59-4C1A90735AC4" } ], "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:opensuse:leap:15.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F1E78106-58E6-4D59-990F-75DA575BFAD9" }, { "criteria": "cpe:2.3:o:opensuse:leap:15.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B620311B-34A3-48A6-82DF-6F078D7A4493" } ], "operator": "OR" } ] } ]