CVE-2022-23815

HIGH
Published Aug 13, 2024 Modified Mar 18, 2025 CWE-787

Description

Improper bounds checking in APCB firmware may allow an attacker to perform an out of bounds write, corrupting the APCB entry, potentially leading to arbitrary code execution.

Is your site exposed to CVE-2022-23815?

Run a free security scan — no signup, results in seconds.

CVSS v3.1 Score

7.5
HIGH
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H

Weakness Type (CWE)

CWE-787 Out-of-bounds Write

Affected Products

Vendor Product
amd athlon_silver_3050u_firmware
amd athlon_silver_3050u
amd athlon_gold_3150u_firmware
amd athlon_gold_3150u
amd ryzen_7_3780u_firmware
amd ryzen_7_3780u
amd ryzen_7_3750h_firmware
amd ryzen_7_3750h
amd ryzen_7_pro_3700u_firmware
amd ryzen_7_pro_3700u
amd ryzen_7_3700u_firmware
amd ryzen_7_3700u
amd ryzen_5_3580u_firmware
amd ryzen_5_3580u
amd ryzen_5_3550h_firmware
amd ryzen_5_3550h
amd ryzen_5_3500u_firmware
amd ryzen_5_3500u
amd ryzen_3_3300u_firmware
amd ryzen_3_3300u
amd ryzen_3_3250u_firmware
amd ryzen_3_3250u
amd ryzen_3_3200u_firmware
amd ryzen_3_3200u
amd athlon_gold_pro_3150g_firmware
amd athlon_gold_pro_3150g
amd athlon_gold_3150g_firmware
amd athlon_gold_3150g
amd athlon_gold_pro_3150ge_firmware
amd athlon_gold_pro_3150ge
amd athlon_pro_300ge_firmware
amd athlon_pro_300ge

References

Frequently Asked Questions

What is CVE-2022-23815? +
Improper bounds checking in APCB firmware may allow an attacker to perform an out of bounds write, corrupting the APCB entry, potentially leading to arbitrary code execution. It has a CVSS v3.1 base score of 7.5 (HIGH).
How severe is CVE-2022-23815? +
CVE-2022-23815 has a CVSS v3.1 score of 7.5 out of 10, rated HIGH. This is a high-severity vulnerability that should be prioritized for patching.
What products are affected by CVE-2022-23815? +
CVE-2022-23815 affects products from amd, specifically: athlon_gold_3150g, athlon_gold_3150g_firmware, athlon_gold_3150u, athlon_gold_3150u_firmware, athlon_gold_pro_3150g, athlon_gold_pro_3150g_firmware, athlon_gold_pro_3150ge, athlon_gold_pro_3150ge_firmware, athlon_pro_300ge, athlon_pro_300ge_firmware, athlon_silver_3050u, athlon_silver_3050u_firmware, ryzen_3_3200u, ryzen_3_3200u_firmware, ryzen_3_3250u, ryzen_3_3250u_firmware, ryzen_3_3300u, ryzen_3_3300u_firmware, ryzen_5_3500u, ryzen_5_3500u_firmware, ryzen_5_3550h, ryzen_5_3550h_firmware, ryzen_5_3580u, ryzen_5_3580u_firmware, ryzen_7_3700u, ryzen_7_3700u_firmware, ryzen_7_3750h, ryzen_7_3750h_firmware, ryzen_7_3780u, ryzen_7_3780u_firmware, ryzen_7_pro_3700u, ryzen_7_pro_3700u_firmware. Check the affected products table above for specific version ranges.
How do I check if I'm vulnerable to CVE-2022-23815? +
You can use Secably's free Website Scanner to check your website for known vulnerabilities. For infrastructure scanning, use the Port Scanner to identify exposed services that may be affected. Check the vendor advisories linked above for specific patch and version information.

Related Vulnerabilities

Don't wait for an exploit

Scan your website for vulnerabilities like CVE-2022-23815 — free, no signup required.