May 9, 2023, 8:15 p.m. |

National Vulnerability Database web.nvd.nist.gov

Time-of-check Time-of-use (TOCTOU) in the
BIOS2PSP command may allow an attacker with a malicious BIOS to create a race
condition causing the ASP bootloader to perform out-of-bounds SRAM reads upon
an S3 resume event potentially leading to a denial of service.

asp bios bootloader check command cve denial of service event malicious may out-of-bounds race condition resume ryzen service sram toctou

Information Security Engineers

@ D. E. Shaw Research | New York City

Technology Security Analyst

@ Halton Region | Oakville, Ontario, Canada

Senior Cyber Security Analyst

@ Valley Water | San Jose, CA

Senior Cloud Security Engineer

@ Hearst | Charlotte, NC, United States

Junior Cybersecurity Analyst

@ SavageOne | Johannesburg, GP, South Africa

Information Security Risk Analyst

@ Take-Two Interactive Software, Inc. | Bengaluru, Karnataka, India