CVE-2025-0032
Published: Sep 6, 2025
Modified: Feb 26, 2026
CVSS v3.1
7.2
Description
Improper cleanup in AMD CPU microcode patch loading could allow an attacker with local administrator privilege to load malicious CPU microcode, potentially resulting in loss of integrity of x86 instruction execution.
| Vendor | Product | Versions |
|---|---|---|
AMD | AMD EPYC™ 9005 Series Processors | unaffected TurinPI 1.0.0.4 |
AMD | AMD Ryzen™ AI 300 Series Processors | unaffected StrixKrackanPI-FP8_1.1.0.1b |
AMD | AMD Ryzen™ 9000 Series Desktop Processors | unaffected ComboAM5PI 1.2.0.3c |
AMD | AMD Ryzen™ 9000HX Series Processors | unaffected FireRangeFL1PI 1.0.0.0a |
AMD | AMD Ryzen™ Al Max+ | unaffected StrixHaloPI-FP11_1.0.0.1 |
AMD | AMD Ryzen™ Threadripper™ 9000 series | unaffected ShimadaPeakPI-SP6 1.0.0.1 |
AMD | AMD EPYC™ Embedded 9000 Series Processors | unaffected Embturin PI 1.0.0.0 |
Weaknesses (CWE)
CVSS v3.1 Details
CVSS v3.1 Vector
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:N
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now