← Vulnerability feed

Vulnerability record · CVE-2022-23823 · published 15 June 2022

CVE-2022-23823: Amd athlon x4 750 firmware observable discrepancy vulnerability

AAmd · Athlon X4 750 Firmware

A potential vulnerability in some AMD processors using frequency scaling may allow an authenticated attacker to execute a timing attack to potentially enable information disclosure.

6.5 CVSS 3.1 Medium EPSS 1.2% · top 33.9% CWE-203 · Observable discrepancy
6.5CVSS 3.1 base score, v2 4.0
1.2%EPSS exploitation probability, 30 days
NoNot in CISA KEV
142Affected product versions listed by NVD
2References
17 Jun 2026Last modified by NVD

Description

A potential vulnerability in some AMD processors using frequency scaling may allow an authenticated attacker to execute a timing attack to potentially enable information disclosure.

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

Affected products

142 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2022-23823 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

6.5CVE-2022-23825Debian linux exposure of resource to wrong sphere vulnerabilityAliases in the branch predictor may cause some AMD processors to predict the wrong branch type potentially leading to information disclosure.EPSS 0.78%6.5CVE-2022-29900Debian linux vulnerabilityMis-trained branch predictions for return instructions may allow arbitrary speculative code execution under certain microarchitecture-dependent condi…EPSS 3.9%6.5CVE-2021-26341Amd athlon x4 940 firmware vulnerabilitySome AMD CPUs may transiently execute beyond unconditional direct branches, which may potentially result in data leakage.EPSS 0.32%5.6CVE-2021-26401Amd athlon x4 940 firmware vulnerabilityLFENCE/JMP (mitigation V2-2) may not sufficiently mitigate CVE-2017-5715 on some AMD CPUs.EPSS 0.29%5.5CVE-2022-23824Xen vulnerabilityIBPB may not prevent return branch predictions from being specified by pre-IBPB branch targets leading to a potential information disclosure.EPSS 0.59%4.7CVE-2022-27672Amd athlon x4 750 firmware vulnerabilityWhen SMT is enabled, certain AMD processors may speculatively execute instructions using a target from the sibling thread after an SMT mode switch po…EPSS 0.28%5.3CVE-2024-39891Twilio Authy API phone number enumeration via observable discrepancyAn unauthenticated endpoint in the Twilio Authy API, reachable through Authy Android before 25.1.0 and Authy iOS before 26.1.0, accepted streams of p…KEVEPSS 1.7%analysed

Source: NIST National Vulnerability Database (record CVE-2022-23823), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.