Home

Description

Insecure default configuration state of DDR5 memory module by AGESA Bootloader Firmware could allow an attacker with local user privilege to abuse the unprotected PMIC interface to create a permanent denial of service condition or affect the integrity of the memory module.

PUBLISHED Reserved 2025-05-22 | Published 2026-05-15 | Updated 2026-05-15 | Assigner AMD




MEDIUM: 6.9CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:H/SC:N/SI:N/SA:N

Problem types

CWE-276 Incorrect Default Permissions

Product status

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

ShimadaPeakPI-SP6 1.0.0.1b
unaffected

Default status
affected

ShimadaPeakPI-SP6 1.0.0.1b
unaffected

Default status
affected

ShimadaPeakPI-SP6 1.0.0.1b
unaffected

Default status
affected

ShimadaPeakPI-SP6 1.0.0.1b
unaffected

References

www.amd.com/...es/product-security/bulletin/AMD-SB-4017.html

cve.org (CVE-2025-48516)

nvd.nist.gov (CVE-2025-48516)

Download JSON