Security Center

The latest security information on MiTAC server products

Security Center

Security Notices

 

AMD CPU Microcode Signature Verification Vulnerability, Jun 3, 2025 (2025-06-03)
(AMD-SB-7033)

Summary:

Researchers from Google® have provided AMD with a report titled “AMD Microcode Signature Verification Vulnerability.” This vulnerability may allow an attacker with system administrative privilege to load malicious CPU microcode patches. In the report, the researchers describe how they were able to load patches that were not signed by AMD. The researchers also demonstrate how they falsified signatures for arbitrary microcode patches.

AMD has not received any reports of this attack occurring in any system.

AMD believes this issue is caused by a weakness in signature verification algorithm that could allow an administrator privileged attacker to load arbitrary microcode patches. AMD plans to issue mitigations to fix this issue.

Affected Platforms and BIOS version numbers that contain the fix:

Product BIOS Version with Fix
AMD SP5 Genoa/Turin
S8050TBD
FT65TB8050TBD
GC68AB8056V3.00
GC68CB8056V4.00
GC68CB8056-TUV4.02
TS70AB8056V2.00
TS70AB8056-TUV3.02
TD76B8058TBD
TS70B8056V2.00
TS70B8056-TUV2.02
TN85B8261TBD
AMD SP6 Siena
S8040TBD
GC73AB8046TBD
AMD Rome/Milan
S8030 V4.04
FT65TB8030 V1.04.B20
S8036 TBD
GC68AB8036 V2.12.B20
TS65AB8036 V2.11.B11
TS65B8036 V2.12.B10
TN83B8251 TBD
TS75AB8252 TBD




 

今すぐ登録 最新ニュースを入手できます。

「OK」をクリックすると、利用規約, プライバシーポリシー、および クッキーポリシーに同意したことになります。