In Ampere AltraMax and Ampere Altra before 2.10c, improper access controls allows the OS to reinitialize a disabled root complex.
References
Link | Resource |
---|---|
https://amperecomputing.com/products/security-bulletins/root-complex-OS-re-enable | Vendor Advisory |
Configurations
History
24 Feb 2023, 17:39
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.8 |
CWE | NVD-CWE-Other | |
CPE | cpe:2.3:o:amperecomputing:ampere_altra_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:amperecomputing:ampere_altra_max_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:amperecomputing:ampere_altra:-:*:*:*:*:*:*:* cpe:2.3:h:amperecomputing:ampere_altra_max:-:*:*:*:*:*:*:* |
|
References | (MISC) https://amperecomputing.com/products/security-bulletins/root-complex-OS-re-enableĀ - Vendor Advisory | |
First Time |
Amperecomputing ampere Altra
Amperecomputing Amperecomputing ampere Altra Max Amperecomputing ampere Altra Firmware Amperecomputing ampere Altra Max Firmware |
17 Feb 2023, 17:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
15 Feb 2023, 17:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-02-15 17:15
Updated : 2023-12-10 14:48
NVD link : CVE-2022-46892
Mitre link : CVE-2022-46892
CVE.ORG link : CVE-2022-46892
JSON object : View
Products Affected
amperecomputing
- ampere_altra_max_firmware
- ampere_altra_firmware
- ampere_altra
- ampere_altra_max
CWE