CVE-2022-23825
MEDIUMCVSS 6.5/10EPSS 0.77%
Last modified
CVE-2022-23825 is a medium-severity vulnerability rated 6.5/10 on the CVSS scale. Aliases in the branch predictor may cause some AMD processors to predict the wrong branch type potentially leading to information disclosure.. EPSS estimates a 0.77% chance of exploitation in the next 30 days.
Description
Aliases in the branch predictor may cause some AMD processors to predict the wrong branch type potentially leading to information disclosure.
Metrics
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Debian | Debian Linux | 11.0 |
| Fedoraproject | Fedora | 35 |
| Fedoraproject | Fedora | 36 |
| Amd | Athlon X4 750 Firmware | All versions |
| Amd | Athlon X4 760k Firmware | All versions |
| Amd | Athlon X4 830 Firmware | All versions |
| Amd | Athlon X4 835 Firmware | All versions |
| Amd | Athlon X4 840 Firmware | All versions |
| Amd | Athlon X4 845 Firmware | All versions |
| Amd | Athlon X4 860k Firmware | All versions |
| Amd | Athlon X4 870k Firmware | All versions |
| Amd | Athlon X4 880k Firmware | All versions |
| Amd | Athlon X4 940 Firmware | All versions |
| Amd | Athlon X4 950 Firmware | All versions |
| Amd | Athlon X4 970 Firmware | All versions |
| Amd | Ryzen Threadripper Pro 3995wx Firmware | All versions |
| Amd | Ryzen Threadripper Pro 3795wx Firmware | All versions |
| Amd | Ryzen Threadripper Pro 3955wx Firmware | All versions |
| Amd | Ryzen Threadripper Pro 3945wx Firmware | All versions |
| Amd | Ryzen Threadripper Pro 5955wx Firmware | All versions |
| Amd | Ryzen Threadripper Pro 5965wx Firmware | All versions |
| Amd | Ryzen Threadripper Pro 5945wx Firmware | All versions |
| Amd | Ryzen Threadripper Pro 5975wx Firmware | All versions |
| Amd | Ryzen Threadripper Pro 5995wx Firmware | All versions |
| Amd | Ryzen Threadripper 2990wx Firmware | All versions |
| Amd | Ryzen Threadripper 2970wx Firmware | All versions |
| Amd | Ryzen Threadripper 2950x Firmware | All versions |
| Amd | Ryzen Threadripper 2920x Firmware | All versions |
| Amd | Ryzen Threadripper 3990x Firmware | All versions |
| Amd | Ryzen Threadripper 3970x Firmware | All versions |
| Amd | Ryzen Threadripper 3960x Firmware | All versions |
| Amd | A12-9700p Firmware | All versions |
| Amd | A12-9730p Firmware | All versions |
| Amd | A10-9600p Firmware | All versions |
| Amd | A10-9630p Firmware | All versions |
| Amd | A9-9410 Firmware | All versions |
| Amd | A9-9420 Firmware | All versions |
| Amd | A6-9210 Firmware | All versions |
| Amd | A6-9220 Firmware | All versions |
| Amd | A6-9220c Firmware | All versions |
| Amd | A4-9120 Firmware | All versions |
| Amd | Ryzen 3 2200u Firmware | All versions |
| Amd | Ryzen 3 2300u Firmware | All versions |
| Amd | Ryzen 5 2500u Firmware | All versions |
| Amd | Ryzen 5 2600 Firmware | All versions |
| Amd | Ryzen 5 2600h Firmware | All versions |
| Amd | Ryzen 5 2600x Firmware | All versions |
| Amd | Ryzen 5 2700 Firmware | All versions |
| Amd | Ryzen 5 2700x Firmware | All versions |
| Amd | Ryzen 7 2700 Firmware | All versions |
Showing 50 of 127 affected configurations. See NVD for the full list.
References
- http://www.openwall.com/lists/oss-security/2022/11/08/1Mailing List, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2022/11/10/2Mailing List, Third Party Advisory
- https://www.debian.org/security/2022/dsa-5184Third Party Advisory
- http://www.openwall.com/lists/oss-security/2022/11/08/1Mailing List, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2022/11/10/2Mailing List, Third Party Advisory
- https://www.debian.org/security/2022/dsa-5184Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2022-23825?
Aliases in the branch predictor may cause some AMD processors to predict the wrong branch type potentially leading to information disclosure.
How severe is CVE-2022-23825?
CVE-2022-23825 has a CVSS score of 6.5/10 (MEDIUM severity). The EPSS model estimates a 0.77% probability of exploitation in the next 30 days.
How do I fix CVE-2022-23825?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2022
- CVE-2022-2382The Product Slider for WooCommerce WordPress plugin before 2…4.3
- CVE-2022-23820Failure to validate the AMD SMM communication buffer may all…9.8
- CVE-2022-23821Improper access control in System Management Mode (SMM) may …9.8
- CVE-2022-23822In this physical attack, an attacker may potentially exploit…6.8
- CVE-2022-23823A potential vulnerability in some AMD processors using frequ…6.5
- CVE-2022-23824IBPB may not prevent return branch predictions from being sp…5.5
- CVE-2022-23826A TOCTOU (Time-Of-Check to Time-Of-Use) in the graphics inte…1.8
- CVE-2022-23827Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID…
- CVE-2022-23829A potential weakness in AMD SPI protection features may allo…8.2
- CVE-2022-2383The Feed Them Social WordPress plugin before 3.0.1 does not …6.1
- CVE-2022-23830SMM configuration may not be immutable, as intended, when SN…5.3
- CVE-2022-23831Insufficient validation of the IOCTL input buffer in AMD μPr…7.5
Are you affected by CVE-2022-23825?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
