Amperecomputing Ampere Altra Max Firmware 1.09

CPE Details

Amperecomputing Ampere Altra Max Firmware 1.09
1.09
2022-07-11
10h51 +00:00
2022-11-09
21h47 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:o:amperecomputing:ampere_altra_max_firmware:1.09:*:*:*:*:*:*:*

Informations

Vendor

amperecomputing

Product

ampere_altra_max_firmware

Version

1.09

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2022-46892 2023-02-15 00h00 +00:00 In Ampere AltraMax and Ampere Altra before 2.10c, improper access controls allows the OS to reinitialize a disabled root complex.
9.8
Critique
CVE-2022-35888 2022-09-28 22h41 +00:00 Ampere Altra and Ampere Altra Max devices through 2022-07-15 allow attacks via Hertzbleed, which is a power side-channel attack that extracts secret information from the CPU by correlating the power consumption with data being processed on the system.
6.5
Moyen
CVE-2022-37459 2022-08-17 10h49 +00:00 Ampere Altra devices before 1.08g and Ampere Altra Max devices before 2.05a allow attackers to control the predictions for return addresses and potentially hijack code flow to execute arbitrary code via a side-channel attack, aka a "Retbleed" issue.
7.8
Haute
CVE-2021-45454 2022-08-17 10h46 +00:00 Ampere Altra before SRP 1.08b and Altra Max​ before SRP 2.05 allow information disclosure of power telemetry via HWmon.
7.5
Haute