5.4
/ 10
MEDIUM
CVSS:4.0/AV:P/AC:H/AT:N/PR:H/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Description
Insufficient parameter sanitization in AMD Secure Processor (ASP) Boot Loader could allow an attacker with access to SPIROM upgrade to overwrite the memory, potentially resulting in arbitrary code execution.
Basic Information
ID
CVE-2025-48515
Source
AMD
Published
Feb 10, 2026 at 19:49
Modified
Feb 10, 2026 at 20:44
Affected Product
Vendor
AMD
Product
AMD Ryzen™ 4000 Series Mobile Processors with Radeon™ Graphics
Version
RenoirPI-FP6 1.0.0.Ed