AMD's TPM implementation includes two high-severity flaws, but fixes have been available since May
Researchers working with the Trusted Computing Group recently identified a potential security issue in AMD's TPM code, prompting the company to release new motherboard and firmware updates to address the vulnerability. The update process was not exactly swift, however, as the fixed TPM code had already been available for months.... Read Entire Article
AMD has released a security bulletin regarding two high-severity flaws in its Trusted Platform Module (TPM) implementation. These vulnerabilities, CVE-2026-6726 and CVE-2026-6727, could allow local attackers with elevated privileges to read sensitive data or decrypt encrypted information. While AMD had fixed these flaws months ago, the company only recently released the AMD-SB-7064 bulletin detailing the issue.
The flaws affect various AMD processor families, including Epyc 4004 and 4005 Series CPUs, Ryzen desktop CPUs, Threadripper workstations, and more. Although both vulnerabilities require a local attack with privileged user access, they have been assigned high CVSS scores of 8.5 and 8.3, respectively. AMD advises users to install the updated Platform Initialization firmware releases to address both vulnerabilities.
Written by urgent.news from TechSpot's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.