Home

Description

Missing authorization in AMD RomArmor could allow an attacker to bypass ROMArmor protections during system resume from a standby state, potentially resulting in a loss of confidentiality and integrity.

PUBLISHED Reserved 2024-05-23 | Published 2025-09-06 | Updated 2025-09-09 | Assigner AMD




HIGH: 8.4CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:N

Problem types

CWE-862 Missing Authorization

Product status

Default status
affected

PhoenixPI-FP8-FP7_1.1.8.0
unaffected

Default status
affected

StrixKrackanPI-FP8_1.1.0.0
unaffected

References

www.amd.com/...es/product-security/bulletin/AMD-SB-4012.html

cve.org (CVE-2024-36326)

nvd.nist.gov (CVE-2024-36326)

Download JSON