CVE-2025-54505
A transient execution vulnerability within AMD CPUs may allow a local user-privileged attacker to leak data via the floating point divisor unit, potentially resulting in loss of confidentiality.
Scoring
- Severity
- LOW
- CVSS base score
- 2
- CVSS vector
- CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N
- EPSS probability
- 0.19%
- CWE
- CWE-1420
- Published
- 2026-04-27
- Last modified
- 2026-04-29
Affected products
- AMD AMD EPYC™ 7001 Series Processors
- AMD AMD EPYC™ Embedded 3000 Series Processors
Weakness type
Related vulnerabilities
- CVE-2025-27572 — Exposure of sensitive information during transient execution for some TDX within Ring 0: Hypervisor...
- CVE-2024-36348 — A transient execution vulnerability in some AMD processors may allow a user process to infer the...
- CVE-2024-36349 — A transient execution vulnerability in some AMD processors may allow a user process to infer...