Database/Firmware, BMC & network fabric
AMD Power Management Firmware (PMFW) - unintended proxy to the System Management Unit: The GPU power management
Impact
The GPU power management firmware acts as an unintended proxy, letting a privileged attacker relay malformed messages through to the System Management Unit. The SMU is the always-on microcontroller that governs clocks, voltages and power limits across the platform; getting arbitrary messages to it through the GPU firmware path means the GPU stack becomes a route into platform-level control. It is the confused-deputy pattern applied to firmware: PMFW is trusted by the SMU, so whoever controls PMFW inherits that trust.
Who can reach it
Local, privileged attacker able to send messages to the GPU power management firmware.
What to do
Fixed in AMD GPU firmware, which on Instinct parts is delivered as a firmware bundle through the ROCm/amdgpu driver package (the PSP loads the signed blobs at driver init) rather than through the server BIOS. Practically: update the AMD GPU driver/firmware package, then **drain the node and reboot** - the firmware is loaded once at driver init, so a reload of the module with no process holding /dev/kfd is the minimum, and a reboot is what you will actually schedule. Some fixes at this layer also require a **GPU VBIOS flash** via AMD's amdvbflash/amdfwtool, which is an offline, per-card operation with real bricking risk - check the AMD bulletin for whether a VBIOS update is called out before assuming a driver package covers it.
References
Related entries
- Dataprobe iBoot PDU: Authenticated OS command injection on the PDUCVE-2023-3260 · Dataprobe iBoot PDUHigh
- Intel 4th Gen Xeon on-chip debug and test interface (with SGX or TDX): The on-chip debug and test interface hasCVE-2023-32666 · Intel 4th Gen Xeon on-chip debug and test interface (with SGX or TDX)High
- AMI MegaRAC SPx (SPX REST API): Arbitrary read and write into the memory of the BMC's IPMI server process via the SPXCVE-2023-34341 · AMI MegaRAC SPx (SPX REST API)High
- AMI MegaRAC SPx (SPX REST API): Shell command injection through the BMC's REST APICVE-2023-34343 · AMI MegaRAC SPx (SPX REST API)High
- Supermicro BMC (IPMI web interface, command injection): Command injection that turns a BMC administrator accountCVE-2023-40289 · Supermicro BMC (IPMI web interface, command injection)High
- Dell PowerEdge Server BIOS (SMM communication buffer): The BIOS fails to properly validate the SMM communicationCVE-2024-0161 · Dell PowerEdge Server BIOS (SMM communication buffer)High
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.