vulnerability

Dell PowerEdge: CVE-2024-36347: DSA-2025-112: Security Update for Dell AMD-based PowerEdge Server Vulnerability

Severity
6
CVSS
(AV:L/AC:M/Au:M/C:C/I:C/A:C)
Published
Mar 5, 2025
Added
Jan 12, 2026
Modified
Jan 12, 2026

Description

Improper signature verification in AMD CPU ROM microcode patch loader may allow an attacker with local administrator privilege to load malicious microcode, potentially resulting in loss of integrity of x86 instruction execution, loss of confidentiality and integrity of data in x86 CPU privileged context and compromise of SMM execution environment.

Solution

dell-poweredge-upgrade-latest
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.