CVE-2024-36347
CVSS Score
6.4
EPSS Score
0.0%
EPSS Percentile
0th
Improper signature verification in AMD CPU ROM microcode patch loader may allow an attacker with local administrator privilege to load malicious microcode, potentially resulting in loss of integrity of x86 instruction execution, loss of confidentiality and integrity of data in x86 CPU privileged context and compromise of SMM execution environment.
| CWE | CWE-347 |
| Vendor | amd |
| Product | amd epyc™ 7001 series |
| Published | Jun 27, 2025 |
| Last Updated | Feb 26, 2026 |
Stay Ahead of the Next One
Get instant alerts for amd amd epyc™ 7001 series
Be the first to know when new medium vulnerabilities affecting amd amd epyc™ 7001 series are published — delivered to Slack, Telegram or Discord.
Get Free Alerts →
Free · No credit card · 60 sec setup
CVSS v3 Breakdown
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H Attack Vector
Local
Attack Complexity
High
Privileges Required
High
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
Affected Versions
AMD / AMD EPYC™ 7001 Series
All versions affected AMD / AMD EPYC™ 7002 Series
All versions affected AMD / AMD EPYC™ 7003 Series
All versions affected AMD / AMD EPYC™ 9004 Series
All versions affected AMD / AMD EPYC™ 4004 Series
All versions affected AMD / AMD EPYC™ 9005 Series
All versions affected AMD / AMD Instinct™ MI300A
All versions affected AMD / AMD Ryzen™ 5000 Series Desktop Processors
All versions affected AMD / AMD Ryzen™ 5000 Series Desktop Processor with Radeon™ Graphics
All versions affected AMD / AMD Ryzen™ 3000 Series Desktop Processors
All versions affected AMD / AMD Athlon™ 3000 Series Desktop Processors with Radeon™ Graphics
All versions affected AMD / AMD Ryzen™ 7000 Series Desktop Processors
All versions affected AMD / AMD Ryzen™ 4000 Series Desktop Processor with Radeon™ Graphics
All versions affected AMD / AMD Ryzen™ 8000 Series Processor with Radeon™ Graphics
All versions affected AMD / AMD Ryzen™ 9000 Series Desktop Processors
All versions affected AMD / AMD Ryzen™ Threadripper™ 3000 Series Processors
All versions affected AMD / AMD Ryzen™ Threadripper™ PRO 7000 WX-Series Processors
All versions affected AMD / AMD Ryzen™ Threadripper™ PRO 3000WX Series Processors
All versions affected AMD / AMD Ryzen™ Threadripper™ PRO 5000WX- Series Desktop Processors
All versions affected AMD / AMD Athlon™ 3000 Series Mobile Processors with Radeon™ Graphics
All versions affected AMD / AMD Ryzen™ 3000 Series Mobile Processor with Radeon™ Graphics
All versions affected AMD / AMD Ryzen™ 4000 Series Mobile Processors with Radeon™ Graphics
All versions affected AMD / AMD Ryzen™ 5000 Series Processors with Radeon™ Graphics
All versions affected AMD / AMD Ryzen™ 7020 Series Processors with Radeon™ Graphics
All versions affected AMD / AMD Ryzen™ 6000 Series Processor with Radeon™ Graphics
All versions affected AMD / AMD Ryzen™ 7035 Series Processor with Radeon™ Graphics
All versions affected AMD / AMD Ryzen™ 7000 Series Processors with Radeon™ Graphics
All versions affected AMD / AMD Ryzen™ 7040 Series Processors with Radeon™ Graphics
All versions affected AMD / AMD Ryzen™ 8040 Series Mobile Processors with Radeon™ Graphics
All versions affected AMD / AMD Ryzen™ 7045 Series Mobile Processors
All versions affected AMD / AMD Ryzen™ AI 300 Series
All versions affected AMD / AMD Ryzen™ AI Max +
All versions affected AMD / AMD Ryzen™ 9000HX Series Mobile Processors
All versions affected AMD / AMD EPYC™ Embedded 3000
All versions affected AMD / AMD EPYC™ Embedded 7002
All versions affected AMD / AMD EPYC™ Embedded 7003
All versions affected AMD / AMD EPYC™ Embedded 8004
All versions affected AMD / AMD EPYC™ Embedded 9004
All versions affected AMD / AMD EPYC™ Embedded 97X4
All versions affected AMD / AMD Ryzen™ Embedded R1000
All versions affected AMD / AMD Ryzen™ Embedded R2000
All versions affected AMD / AMD Ryzen™ Embedded 5000
All versions affected AMD / AMD Ryzen™ Embedded 7000
All versions affected AMD / AMD Ryzen™ Embedded V1000
All versions affected AMD / AMD Ryzen™Embedded V2000
All versions affected AMD / AMD Ryzen™Embedded V3000
All versions affected