Vulnerability Description
A division-by-zero error on some AMD processors can potentially return speculative data resulting in loss of confidentiality.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Debian | Debian Linux | 10.0 |
| Amd | Epyc 7351P Firmware | - |
| Amd | Epyc 7351P | - |
| Amd | Epyc 7401P Firmware | - |
| Amd | Epyc 7401P | - |
| Amd | Epyc 7551P Firmware | - |
| Amd | Epyc 7551P | - |
| Amd | Epyc 7251 Firmware | - |
| Amd | Epyc 7251 | - |
| Amd | Epyc 7261 Firmware | - |
| Amd | Epyc 7261 | - |
| Amd | Epyc 7281 Firmware | - |
| Amd | Epyc 7281 | - |
| Amd | Epyc 7301 Firmware | - |
| Amd | Epyc 7301 | - |
| Amd | Epyc 7351 Firmware | - |
| Amd | Epyc 7351 | - |
| Amd | Epyc 7371 Firmware | - |
| Amd | Epyc 7371 | - |
| Amd | Epyc 7401 Firmware | - |
Related Weaknesses (CWE)
References
- http://www.openwall.com/lists/oss-security/2023/09/25/3Mailing ListThird Party Advisory
- http://www.openwall.com/lists/oss-security/2023/09/25/4Mailing ListThird Party Advisory
- http://www.openwall.com/lists/oss-security/2023/09/25/5Mailing ListThird Party Advisory
- http://www.openwall.com/lists/oss-security/2023/09/25/7Mailing ListThird Party Advisory
- http://www.openwall.com/lists/oss-security/2023/09/25/8Mailing ListThird Party Advisory
- http://www.openwall.com/lists/oss-security/2023/09/26/5Mailing ListThird Party Advisory
- http://www.openwall.com/lists/oss-security/2023/09/26/8Mailing ListThird Party Advisory
- http://www.openwall.com/lists/oss-security/2023/09/26/9Mailing ListThird Party Advisory
- http://www.openwall.com/lists/oss-security/2023/09/27/1Mailing ListThird Party Advisory
- http://www.openwall.com/lists/oss-security/2023/10/03/12Mailing ListThird Party Advisory
- http://www.openwall.com/lists/oss-security/2023/10/03/13Mailing ListThird Party Advisory
- http://www.openwall.com/lists/oss-security/2023/10/03/14Mailing ListThird Party Advisory
- http://www.openwall.com/lists/oss-security/2023/10/03/15Mailing ListThird Party Advisory
- http://www.openwall.com/lists/oss-security/2023/10/03/16Mailing ListThird Party Advisory
- http://www.openwall.com/lists/oss-security/2023/10/03/9Mailing ListThird Party Advisory
FAQ
What is CVE-2023-20588?
CVE-2023-20588 is a vulnerability with a CVSS score of 5.5 (MEDIUM). A division-by-zero error on some AMD processors can potentially return speculative data resulting in loss of confidentiality.
How severe is CVE-2023-20588?
CVE-2023-20588 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-20588?
Check the references section above for vendor advisories and patch information. Affected products include: Debian Debian Linux, Amd Epyc 7351P Firmware, Amd Epyc 7351P, Amd Epyc 7401P Firmware, Amd Epyc 7401P.