Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
3666 articles · 197852 vulns · 37/41 feeds (7d)
← Back to list
—
CVE-2025-54518EXPLOITEDPATCHED
amd · zen

CVE-2025-54518: Improper isolation of shared resources within the CPU operation cache on Zen 2-based products could allow an attacker to

Description

Improper isolation of shared resources within the CPU operation cache on Zen 2-based products could allow an attacker to corrupt instructions executed at a different privilege level, potentially resulting in privilege escalation.

Affected Products

VendorProductVersions
amdzen—

References

  • https://www.amd.com/en/resources/product-security/bulletin/AMD-SB-7052.html

Related News (20 articles)

Tier B
CERT-FR5d ago
Multiples vulnérabilités dans le noyau Linux de Red Hat (21 août 2026)
→ No new info (linked only)
Tier B
CERT-FR5d ago
Multiples vulnérabilités dans le noyau Linux d'Ubuntu (21 août 2026)
→ No new info (linked only)
Tier B
CERT-FR5d ago
Multiples vulnérabilités dans le noyau Linux de SUSE (21 août 2026)
→ No new info (linked only)
Tier B
CERT-FR12d ago
Multiples vulnérabilités dans le noyau Linux de SUSE (14 août 2026)
→ No new info (linked only)
Tier B
CERT-FR12d ago
Multiples vulnérabilités dans le noyau Linux de Red Hat (14 août 2026)
→ No new info (linked only)
Tier B
CERT-FR19d ago
Multiples vulnérabilités dans le noyau Linux de Red Hat (07 août 2026)
→ No new info (linked only)
Tier B
CERT-FR19d ago
Multiples vulnérabilités dans le noyau Linux d'Ubuntu (07 août 2026)
→ No new info (linked only)
Tier B
CERT-FR26d ago
Multiples vulnérabilités dans le noyau Linux d'Ubuntu (31 juillet 2026)
→ No new info (linked only)
Tier B
CERT-FR33d ago
Multiples vulnérabilités dans le noyau Linux d'Ubuntu (24 juillet 2026)
→ No new info (linked only)
Tier B
CERT-FR75d ago
Multiples vulnérabilités dans le noyau Linux de SUSE (12 juin 2026)
→ No new info (linked only)
Tier B
CERT-FR82d ago
Multiples vulnérabilités dans le noyau Linux de SUSE (05 juin 2026)
→ No new info (linked only)
Tier B
CERT-FR96d ago
Multiples vulnérabilités dans le noyau Linux de SUSE (22 mai 2026)
→ No new info (linked only)
Tier E
Hacker News98d ago
CVE-2025-54518
→ No new info (linked only)
Tier B
BSI Advisories105d ago
[NEU] [hoch] Microsoft Windows Produkte: Mehrere Schwachstellen
→ No new info (linked only)
Tier B
CERT-FR105d ago
Vulnérabilité dans Xen (13 mai 2026)
→ No new info (linked only)
Tier B
CERT-FR105d ago
Multiples vulnérabilités dans Microsoft Windows (13 mai 2026)
→ No new info (linked only)
Tier C
VulDB106d ago
CVE-2025-54518 | Microsoft Windows up to Server 2025 CPU OP Cache privilege escalation
→ No new info (linked only)
Tier C
oss-security106d ago
Xen Security Advisory 490 v1 (CVE-2025-54518) - x86: CPU Opcode Cache corruption
→ No new info (linked only)
Tier A
Microsoft MSRC106d ago
CVE-2025-54518 AMD: CVE-2025-54518 CPU OP Cache Corruption
→ No new info (linked only)
Tier C
oss-security131d ago
Xen Security Advisory 488 v1 - x86: Floating Point Divider State Sampling
→ No new info (linked only)
CISA KEV❌ No
Actively exploited✅ Yes
Patch available
xsa490-4.21.patch
CWECWE-1189
PublishedMay 13, 2026
Last enriched105d ago
Tags
privilege escalationxensecurity patch
Trending Score31
Source articles20
Independent6
Info Completeness7/14
Missing: cvss, epss, cwe, kev, exploit, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

CRITICALCVE-2026-53313
drm/amd/display: Avoid NULL dereference in dc_dmub_srv error paths
Trending: 28
NONECVE-2025-54512
CVE-2025-54512: A DLL hijacking vulnerability within the AMD Ryzen Master installation could allow a local user-privileged attacker to e
Trending: 7
NONECVE-2026-0465
CVE-2026-0465: A Use‑After‑Free (UAF) vulnerability in the AMD Ryzen™ Master Utility Driver could allow a local attacker to access kern
Trending: 6
NONECVE-2026-43606
CVE-2026-43606: Observable Timing Discrepancy in the AMD Vitis Libraries ECDSA secp256k1 component could allow attackers with local acce
Trending: 4
NONECVE-2025-8087
CVE-2025-8087: A DLL hijacking vulnerability in AMD Power Design Manager could allow a malicious local attacker to escalate privileges
Trending: 4

Pin to Dashboard

Verification

State: verified
Confidence: 0%

Vulnerability Timeline

CVE Published
May 13, 2026
Discovered by ZDM
May 13, 2026
Actively Exploited
Aug 26, 2026
Exploit Available
Aug 26, 2026
Patch Available
Aug 26, 2026