AMD refused to fix the Sinkclose vulnerability in Ryzen 3000 and earlier – they are too old

Image Source: AMD/tomshardware.com

The vulnerability, dubbed Sinkclose, allows hackers to gain access to the SMM system management mode in computers running AMD processors and inject malware into the UEFI bootloader. It is almost impossible to detect and remove such software – this will require physically erasing the contents of the chip from the BIOS using a programmer. To complicate matters, the SMM layer allows unrestricted access to all system memory and can be used to monitor the operating system. Given the severity of the problem, AMD has released security updates for a number of processors.

However, the company notes that some older products are beyond the period of their software support – AMD does not intend to close the security hole in them. In particular, the company does not plan to update the Ryzen 1000, 2000 and 3000 series processors, as well as the Threadripper 1000 and 2000 models. The new Ryzen 9000 and Ryzen AI 300 processors are also missing from the list, but there is a possibility that for them the vulnerability was fixed at the factory .

Processors that have already received or are awaiting a security update include the following:

  • All generations of AMD EPYC processors for data centers;
  • Latest Threadripper and Ryzen models;

  • MI300A chips for data centers.

Full table of AMD chips for which the update will be released:

Image source: Tomshardware.com

Although the Sinkclose vulnerability is difficult to exploit, AMD recommends that all users install the update as soon as it becomes available. At the same time, the company assured that the update will not affect processor performance.

It is also noted that all Ryzen Embedded and EPYC Embedded, without exception, will receive the update. This is due to the fact that most embedded processors run in the background 24/7 without human intervention for several years, which further creates the threat of various types of hacker attacks.

admin

Share
Published by
admin

Recent Posts

Why aren’t today’s semiconductors good enough for AI?

The smaller the manufacturing standards by which a chip is made, the higher its density…

4 hours ago

Asus Launches Gold ROG Astral RTX 5090 Dhahab Edition Graphics Card — Price Reaches $10,600

Earlier this year, at Nvidia's GTC 2025 conference, Asus showed off what is probably the…

5 hours ago

Legendary Quake Inducted into World Video Game Hall of Fame Along with Pet Simulator Tamogotchi

The International Center for Video Game History at The Strong Museum in New York has…

5 hours ago

MSI Releases New Version of Claw 8 AI+ Gaming Console — White Case and Up to 2TB Storage for $999

At the end of last year, MSI introduced the Claw 8 AI+ and Claw 7…

6 hours ago

Apple to Go Beyond in 2027 with Robot, Smart Glasses, and Foldable iPhone Plans

2027 could be one of the most significant years for Apple. The company plans to…

8 hours ago

FTC’s ‘One-Click Unsubscribe’ Rule Delayed Again, But Not for Long

The US Federal Trade Commission (FTC) has delayed a rule that would require companies to…

1 day ago