CVE-2025-0032
CVE-2025-0032
Vexday Risk Score
21Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 7.2EPSS 0.1%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
06 Sep 2025Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Improper cleanup in AMD CPU microcode patch loading could allow an attacker with local administrator privilege to load malicious CPU microcode, potentially resulting in loss of integrity of x86 instruction execution.
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:N
Affected products
AMD · AMD EPYC™ 9005 Series ProcessorsAMD · AMD EPYC™ Embedded 9000 Series ProcessorsAMD · AMD Ryzen™ 9000HX Series ProcessorsAMD · AMD Ryzen™ 9000 Series Desktop ProcessorsAMD · AMD Ryzen™ AI 300 Series ProcessorsAMD · AMD Ryzen™ Al Max+AMD · AMD Ryzen™ Threadripper™ 9000 seriesWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →