Vulnerability CVE-2023-20578


Published: 2024-08-13

Description:
A TOCTOU (Time-Of-Check-Time-Of-Use) in SMM may allow
an attacker with ring0 privileges and access to the
BIOS menu or UEFI shell to modify the communications buffer potentially
resulting in arbitrary code execution.

 References:
https://www.amd.com/en/resources/product-security/bulletin/amd-sb-3003.html

Copyright 2026, cxsecurity.com

 

Back to Top