0
MSI Releases AGESA 1.2.0.Ca BIOS For AM4 Motherboards, Addresses AMD Zen 2 CPU Security Issues

MSI Releases AGESA 1.2.0.Ca BIOS For AM4 Motherboards, Addresses AMD Zen 2 CPU Security Issues

MSI has introduced a new AGESA 1.2.0.Ca BIOS for its AM4 motherboards which Security Vulnerability on AMD Zen 2 CPUs.

MSI's latest BIOS update addresses the AMD Zen 2 CPU security flaw, AGESA 1.2.0.Ca for AM4 motherboards.

it's been a long time. AMD's AM4 motherboards received a major BIOS update. But it seems that the new one had to be rolled out because the Zen 2 CPUs were affected by the cross-process information leak issue. MSI is quick to address this and has introduced its AGESA 1.2.0.Ca. BIOS update which can be obtained here..

Abstract

Under certain microarchitectural conditions, a register cannot be properly written to 0 in “Zen 2” CPUs. This can cause data from another process and/or thread to be stored in the YMM register, potentially allowing an attacker to access sensitive information.

CVE specification

CVE intensity CVE Description
CVE-2023-20593 medium An issue in “Zen 2” CPUs could, under certain microarchitectural conditions, allow an attacker to access potentially sensitive information.

Reduction

AMD recommends applying the following µcode patches and BIOS updates for AMD EPYC 7002 processors including the following AGESA firmware versions for other affected products. AMD plans to release AGESA versions to original equipment manufacturers (OEMs) on the target dates below. Please consult your OEM for a BIOS update specific to your product.

Desktop

Abatement Details
Update to the version listed or above.
AMD Ryzen 3000 series desktop processors
(former code name)
“Metis”
AMD Ryzen 4000 Series desktop processors with Radeon™ graphics
(former code name)
“Renoir” AM4
AGESA Firmware ComboAM4v2PI
1.2.0.C
(2024-02-07) ComboAM4PI
1.0.0.B
(2024-03-20)
ComboAM4v2PI
1.2.0.Ca
(14-03-2024)

High End Desktop (HEDT)

Abatement Details
Update to the version listed or above.
AMD Ryzen Threadripper 3000 series processors
(former code name)
“Castle Peak” HEDT
AMD AGESA Firmware CastlePeakPI-SP3r3 1.0.0.A
(21-11-2023)

Workstation

Abatement Details
Update to the version listed or above.
AMD Ryzen Threadripper PRO 3000WX series processors
(former code name)
“Castle Peak” WS SP3
AGESA Firmware CastlePeakWSPI-sWRX8 1.0.0.C
(2023-11-29)ChagallWSPI-sWRX8 1.0.0.7
(2024-01-11)

Share this story.

Facebook

Twitter

About the Author

Leave a Reply