AMD's TPM implementation includes two high-severity flaws, but fixes have been available since May
Researchers working with the Trusted Computing Group recently identified a potential security issue in AMD's TPM code, prompting the company to release new motherboard and firmware updates to address the vulnerability. The update process was not exactly swift, however, as the fixed TPM code had already been available for months.... Read Entire Article
AMD has published a security bulletin regarding two high-severity vulnerabilities found in its Trusted Platform Module (TPM) implementation. These flaws, CVE-2026-6726 and CVE-2026-6727, could potentially allow local attackers with elevated privileges to leak sensitive data or decrypt encrypted information. Both vulnerabilities affect a wide range of AMD processors, including Epyc, Ryzen desktop CPUs, Threadripper workstations, and others.
AMD has been providing updated firmware since May to address these issues, with the full list of affected processors and firmware versions available in the AMD-SB-7064 bulletin. While the vulnerabilities carry high CVSS scores, they require a local, privileged attack and should not pose a significant risk to systems only exposed to the internet.
Brief written by urgent.news from TechSpot's own syndicated text. Machine-written — may contain errors; check the original before relying on it.