CVE-2025-0037

MEDIUM

AMD Versal Adaptive SoC - Memory Corruption

Title source: llm
STIX 2.1

Description

In AMD Versal Adaptive SoC devices, the lack of address validation when executing PLM runtime services through the PLM firmware can allow access to isolated or protected memory spaces, resulting in the loss of integrity and confidentiality.

References (1)

Core 1

Scores

CVSS v3 6.6
EPSS 0.0007
EPSS Percentile 21.4%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-20
Status published
Products (1)
AMD/Platform Loader and Manager (PLM) Refer to AMD-SB-8010
Published Jun 10, 2025
Tracked Since Feb 18, 2026