Description
Ampere AmpereOne AC03 devices before 3.5.9.3, AmpereOne AC04 devices before 4.4.5.2, and AmpereOne M devices before 5.4.5.1 allow an incorrectly formed SMC call to UEFI-MM PCIe driver that could result in an out-of-bounds write within PCIe driver’s S-EL0 address space.
Published: 2025-12-16
Score: 9.8 Critical
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 13 Jan 2026 21:00:00 +0000

Type Values Removed Values Added
First Time appeared Amperecomputing ampereone A128-34x
Amperecomputing ampereone A128-34x Firmware
Amperecomputing ampereone A144-24x
Amperecomputing ampereone A144-24x Firmware
Amperecomputing ampereone A144-26m
Amperecomputing ampereone A144-26m Firmware
Amperecomputing ampereone A144-27x
Amperecomputing ampereone A144-27x Firmware
Amperecomputing ampereone A144-33m
Amperecomputing ampereone A144-33m Firmware
Amperecomputing ampereone A160-28m
Amperecomputing ampereone A160-28m Firmware
Amperecomputing ampereone A160-28x
Amperecomputing ampereone A160-28x Firmware
Amperecomputing ampereone A192-26m
Amperecomputing ampereone A192-26m Firmware
Amperecomputing ampereone A192-26x
Amperecomputing ampereone A192-26x Firmware
Amperecomputing ampereone A192-32m
Amperecomputing ampereone A192-32m Firmware
Amperecomputing ampereone A192-32x
Amperecomputing ampereone A192-32x Firmware
Amperecomputing ampereone A96-36m
Amperecomputing ampereone A96-36m Firmware
Amperecomputing ampereone A96-36x
Amperecomputing ampereone A96-36x Firmware
CPEs cpe:2.3:h:amperecomputing:ampereone_a128-34x:-:*:*:*:*:*:*:*
cpe:2.3:h:amperecomputing:ampereone_a144-24x:-:*:*:*:*:*:*:*
cpe:2.3:h:amperecomputing:ampereone_a144-26m:-:*:*:*:*:*:*:*
cpe:2.3:h:amperecomputing:ampereone_a144-27x:-:*:*:*:*:*:*:*
cpe:2.3:h:amperecomputing:ampereone_a144-33m:-:*:*:*:*:*:*:*
cpe:2.3:h:amperecomputing:ampereone_a160-28m:-:*:*:*:*:*:*:*
cpe:2.3:h:amperecomputing:ampereone_a160-28x:-:*:*:*:*:*:*:*
cpe:2.3:h:amperecomputing:ampereone_a192-26m:-:*:*:*:*:*:*:*
cpe:2.3:h:amperecomputing:ampereone_a192-26x:-:*:*:*:*:*:*:*
cpe:2.3:h:amperecomputing:ampereone_a192-32m:-:*:*:*:*:*:*:*
cpe:2.3:h:amperecomputing:ampereone_a192-32x:-:*:*:*:*:*:*:*
cpe:2.3:h:amperecomputing:ampereone_a96-36m:-:*:*:*:*:*:*:*
cpe:2.3:h:amperecomputing:ampereone_a96-36x:-:*:*:*:*:*:*:*
cpe:2.3:o:amperecomputing:ampereone_a128-34x_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:amperecomputing:ampereone_a144-24x_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:amperecomputing:ampereone_a144-26m_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:amperecomputing:ampereone_a144-27x_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:amperecomputing:ampereone_a144-33m_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:amperecomputing:ampereone_a160-28m_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:amperecomputing:ampereone_a160-28x_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:amperecomputing:ampereone_a192-26m_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:amperecomputing:ampereone_a192-26x_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:amperecomputing:ampereone_a192-32m_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:amperecomputing:ampereone_a192-32x_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:amperecomputing:ampereone_a96-36m_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:amperecomputing:ampereone_a96-36x_firmware:*:*:*:*:*:*:*:*
Vendors & Products Amperecomputing ampereone A128-34x
Amperecomputing ampereone A128-34x Firmware
Amperecomputing ampereone A144-24x
Amperecomputing ampereone A144-24x Firmware
Amperecomputing ampereone A144-26m
Amperecomputing ampereone A144-26m Firmware
Amperecomputing ampereone A144-27x
Amperecomputing ampereone A144-27x Firmware
Amperecomputing ampereone A144-33m
Amperecomputing ampereone A144-33m Firmware
Amperecomputing ampereone A160-28m
Amperecomputing ampereone A160-28m Firmware
Amperecomputing ampereone A160-28x
Amperecomputing ampereone A160-28x Firmware
Amperecomputing ampereone A192-26m
Amperecomputing ampereone A192-26m Firmware
Amperecomputing ampereone A192-26x
Amperecomputing ampereone A192-26x Firmware
Amperecomputing ampereone A192-32m
Amperecomputing ampereone A192-32m Firmware
Amperecomputing ampereone A192-32x
Amperecomputing ampereone A192-32x Firmware
Amperecomputing ampereone A96-36m
Amperecomputing ampereone A96-36m Firmware
Amperecomputing ampereone A96-36x
Amperecomputing ampereone A96-36x Firmware

Wed, 17 Dec 2025 15:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-787
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 16 Dec 2025 21:00:00 +0000

Type Values Removed Values Added
First Time appeared Amperecomputing
Amperecomputing ampereone
Vendors & Products Amperecomputing
Amperecomputing ampereone

Tue, 16 Dec 2025 17:30:00 +0000

Type Values Removed Values Added
Description Ampere AmpereOne AC03 devices before 3.5.9.3, AmpereOne AC04 devices before 4.4.5.2, and AmpereOne M devices before 5.4.5.1 allow an incorrectly formed SMC call to UEFI-MM PCIe driver that could result in an out-of-bounds write within PCIe driver’s S-EL0 address space.
References

Subscriptions

Amperecomputing Ampereone Ampereone A128-34x Ampereone A128-34x Firmware Ampereone A144-24x Ampereone A144-24x Firmware Ampereone A144-26m Ampereone A144-26m Firmware Ampereone A144-27x Ampereone A144-27x Firmware Ampereone A144-33m Ampereone A144-33m Firmware Ampereone A160-28m Ampereone A160-28m Firmware Ampereone A160-28x Ampereone A160-28x Firmware Ampereone A192-26m Ampereone A192-26m Firmware Ampereone A192-26x Ampereone A192-26x Firmware Ampereone A192-32m Ampereone A192-32m Firmware Ampereone A192-32x Ampereone A192-32x Firmware Ampereone A96-36m Ampereone A96-36m Firmware Ampereone A96-36x Ampereone A96-36x Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2025-12-17T14:30:24.767Z

Reserved: 2025-10-24T00:00:00.000Z

Link: CVE-2025-62863

cve-icon Vulnrichment

Updated: 2025-12-17T14:30:10.231Z

cve-icon NVD

Status : Analyzed

Published: 2025-12-16T18:16:13.493

Modified: 2026-01-13T20:57:29.577

Link: CVE-2025-62863

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2025-12-16T20:45:12Z

Weaknesses