< Back to all clusters
[TECHNOLOGY] · United States · 7 sources

started · updated

AMD and Windows 11 face major security vulnerabilities

Security researchers have identified two critical vulnerabilities, CVE-2026-6726 and CVE-2026-6727, affecting AMD's Trusted Platform Module (TPM) 2.0 implementation. These flaws, which carry high CVSS scores of 8.5 and 8.3 respectively, impact a wide range of AMD processors, including Ryzen series 3000 through 9000, Threadripper, Epyc, and Ryzen AI models. The vulnerabilities could allow a local attacker with elevated privileges to extract sensitive data or bypass TPM authentication.

Separately, researchers from the Universities of Birmingham and Durham presented a new attack technique called “Download More RAM” at the USENIX Security Symposium. This method exploits vulnerabilities in how certain DDR4 and DDR5 RAM modules store configuration data via the Serial Presence Detect (SPD) chip. By modifying this data through software, an attacker can trick Windows 11 into creating memory aliases. This allows them to bypass advanced security features like Virtualization-Based Security (VBS) and Hypervisor-Enforced Code Integrity (HVCI), potentially neutralizing antivirus and EDR solutions.

AMD has released firmware updates and AGESA microcode to address the TPM vulnerabilities, with many motherboard manufacturers already distributing BIOS updates for AM4 and AM5 platforms.

Entities

AMD · Microsoft · Ryzen · Trusted Computing Group · University of Birmingham · University of Durham