CVE-2018-8933: AMD Epyc Server Firmware

Critical severity, CVSS 9.0. EPSS: 1.7% chance of exploitation in the next 30 days.

The AMD EPYC Server processor chips have insufficient access control for protected memory regions, aka FALLOUT-1, FALLOUT-2, and FALLOUT-3.

Affected products

  • AMD Epyc Server Firmware: affected versions not specified

Published 2018-03-22. Last modified 2026-06-17.