CVE-2025-54510: AMD Epyc 7003 Series Processors
Medium severity, CVSS 5.9. EPSS: 0.1% chance of exploitation in the next 30 days.
A missing lock verification in AMD Secure Processor (ASP) firmware may permit a locally authenticated attacker with administrative privileges to alter MMIO routing on some Zen 5-based products, potentially compromising guest system integrity.
Affected products
- AMD AMD Epyc 7003 Series Processors
- AMD AMD Epyc 8004 Series Processors
- AMD AMD Epyc 9004 Series Processors
- AMD AMD Epyc 9005 Series Processors
- AMD AMD Epyc Embedded 7003 Series Processors
- AMD AMD Epyc Embedded 8004 Series Processors
- AMD AMD Epyc Embedded 9004 Series Processors
- AMD AMD Epyc Embedded 9005 Series Processors
Published 2026-04-16. Last modified 2026-06-17.