Database/Firmware, BMC & network fabric
AMD Secure Processor TEE - Secure OS stack overrun (AMD-SB-3003): A stack overrun in the ASP Secure OS trusted
Impact
A stack overrun in the ASP Secure OS trusted execution environment, denying service to the secure processor. With the ASP down, the platform loses fTPM services, SEV key operations and attestation - so on a confidential-computing host this is not a cosmetic crash, it takes your CVM capacity offline until the node is power-cycled.
Who can reach it
Local, through the ASP TEE interface.
What to do
Fixed in AMD PI/AGESA firmware and delivered only as an OEM SBIOS package - AMD ships the PI drop to Dell, HPE, Supermicro, Lenovo and the ODMs, who each requalify before releasing BIOS. **Budget one to six months of OEM lag**, and note that several CVEs in this batch are marked 'no fix planned' on Naples (EPYC 7001) - for those the only remediation is retiring the hardware. Applying it means cordon, drain and a full power cycle per node; there is no driver reload, no live patch and no VBIOS step.
References
Related entries
- Intel Server OpenBMC firmware (before egs-1.09) - authentication logic: An authenticated low-privilege user escalatesCVE-2023-31189 · Intel Server OpenBMC firmware (before egs-1.09) - authentication logicMedium
- Cisco NX-OS (bootloader / image signature verification): Secure boot on the switch is defeatable: an attackerCVE-2024-20397 · Cisco NX-OS (bootloader / image signature verification)Medium
- AMI AptioV UEFI BIOS (SPI flash integrity verification): An actor with physical access can modify the SPI flashCVE-2024-33660 · AMI AptioV UEFI BIOS (SPI flash integrity verification)Medium
- shim (MZ/PE header parser): Out-of-bounds read parsing MZ binariesCVE-2023-40551 · shim (MZ/PE header parser)Medium
- Solidigm DC SSDs (D3-S4510/S4520/S4610/S4620, D5-P5316, D7-P5520/P5620, DC S4500/S4600)CVE-2024-47973 · Solidigm DC SSDs (D3-S4510/S4520/S4610/S4620, D5-P5316, D7-P5520/P5620, DC S4500/S4600) - over-provisioned NAND not…Medium
- Arm Neoverse V2 / V3 / V3AE, Cortex-X3 / X4 / X925, C1-seriesCVE-2024-7881 · Arm Neoverse V2 / V3 / V3AE, Cortex-X3 / X4 / X925, C1-series; mitigated in Trusted Firmware-A v2.2-v2.12 and LTS…Medium
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.