Automatically translated.View original post

Use AMD. Wait for BIOS updates. ðŸšĻ

AMD has warned users of the Zen 5 family of CPUs to be aware of new vulnerabilities in the RDSEED command used to generate random numbers from hardware. This bug causes 16-bit and 32-bit RDSEED commands to restore zero (0) when the system understands that they have succeeded. In fact, random numbers have not been generated, resulting in random values that should be fixed.

.

This can cause the creation of encryption keys or random-dependent processes to be less secure, because the resulting numbers can be guessed and open up a channel for hackers to use to break through the system or trap data more easily.

.

This vulnerability is documented in AMD-SB-7055 code and CVE-2025-62626 number, has a high severity level (CVSS 7.2/10 points). AMD states that this problem only hits 16-bit and 32-bit RDSEEDs, while the 64-bit version remains safe, not affected.

.

The root of the problem was discovered by an engineer from Meta who observed abnormal behavior and reported it in the Linux Kernel Mailing List before AMD came out to officially confirm it. The Linux community has now issued a temporary patch to disable RDSEED on Zen 5 first, to avoid the risk pending an update from AMD.

.

Affected CPUs include both the Ryzen 9000, Ryzen AI 300, Threadripper 9000, and Ryzen Z2, as well as server sides like the EPYC 9005 that have already been updated, fixed. For the general user model, AMD prepares to release the fix update through AGESA firmware in late November 2025 and will gradually cover it through early 2026.

.

In the meantime, AMD recommends avoiding 16-bit and 32-bit RDSEED by switching to 64-bit instead or using software-side random systems temporarily. For Linux users, it is possible to install patches that disable RDSEED for safety.

.

While this problem does not directly affect the general user, for systems that rely on hardware randomness, such as encryption, identity verification, or enterprise security, it is important not to overlook. It is recommended to check the BIOS or UEFI update from the motherboard manufacturer and update immediately when a new version comes out.

.

Source: tomshardware, AMD

# IT News # Includes IT matters # Cough to know # IT

2025/11/13 Edited to

... Read moreāļˆāļēāļāļāļĢāļ“āļĩāļŠāđˆāļ­āļ‡āđ‚āļŦāļ§āđˆ RDSEED āļšāļ™āļ‹āļĩāļžāļĩāļĒāļđ AMD Zen 5 āļ—āļĩāđˆāļœāļđāđ‰āđƒāļŠāđ‰āļ‡āļēāļ™āļ„āļ§āļĢāļĢāļ°āļ§āļąāļ‡āļ­āļĒāđˆāļēāļ‡āļĒāļīāđˆāļ‡ āļŠāđˆāļ‡āļœāļĨāļāļĢāļ°āļ—āļšāļšāļ™āļ„āļģāļŠāļąāđˆāļ‡ RDSEED āļ‚āļ™āļēāļ” 16-bit āđāļĨāļ° 32-bit āļ—āļģāđƒāļŦāđ‰āļāļēāļĢāļŠāļĢāđ‰āļēāļ‡āļ•āļąāļ§āđ€āļĨāļ‚āļŠāļļāđˆāļĄāļ­āļēāļˆāļ„āļ·āļ™āļ„āđˆāļēāđ€āļ›āđ‡āļ™āļĻāļđāļ™āļĒāđŒāđāļ—āļ™āļ„āđˆāļēāļ—āļĩāđˆāļŠāļļāđˆāļĄāļˆāļĢāļīāļ‡ āļ‹āļķāđˆāļ‡āļ–āļ·āļ­āđ€āļ›āđ‡āļ™āļ›āļĢāļ°āđ€āļ”āđ‡āļ™āļĢāđ‰āļēāļĒāđāļĢāļ‡āļ—āļĩāđˆāļĄāļĩāļ„āļ°āđāļ™āļ™ CVSS 7.2/10 āļāļēāļĢāļŠāļļāđˆāļĄāļ•āļąāļ§āđ€āļĨāļ‚āđƒāļ™āļĢāļ°āļ”āļąāļšāļŪāļēāļĢāđŒāļ”āđāļ§āļĢāđŒāļ™āļąāđ‰āļ™āļĄāļĩāļ„āļ§āļēāļĄāļŠāļģāļ„āļąāļāļĄāļēāļāļ•āđˆāļ­āļĢāļ°āļšāļšāļ—āļĩāđˆāļ•āđ‰āļ­āļ‡āđƒāļŠāđ‰āļ„āļ§āļēāļĄāļ›āļĨāļ­āļ”āļ āļąāļĒāļ‚āļąāđ‰āļ™āļŠāļđāļ‡ āđ€āļŠāđˆāļ™ āļāļēāļĢāļŠāļĢāđ‰āļēāļ‡āļāļļāļāđāļˆāđ€āļ‚āđ‰āļēāļĢāļŦāļąāļŠ āļŦāļĢāļ·āļ­āļāļēāļĢāļĒāļ·āļ™āļĒāļąāļ™āļ•āļąāļ§āļ•āļ™ āļŦāļēāļāļ„āđˆāļēāļ—āļĩāđˆāđ„āļ”āđ‰āđ„āļĄāđˆāļŠāļļāđˆāļĄāļˆāļĢāļīāļ‡ āļ­āļēāļˆāđ€āļ›āļīāļ”āļŠāđˆāļ­āļ‡āđƒāļŦāđ‰āđāļŪāļāđ€āļāļ­āļĢāđŒāļŠāļēāļĄāļēāļĢāļ–āļ—āļģāļāļēāļĢāđ‚āļˆāļĄāļ•āļĩāļŦāļĢāļ·āļ­āļ”āļąāļāļˆāļąāļšāļ‚āđ‰āļ­āļĄāļđāļĨāđ„āļ”āđ‰āļ‡āđˆāļēāļĒāļ‚āļķāđ‰āļ™ āļŠāđˆāļ‡āļœāļĨāļāļĢāļ°āļ—āļšāļ•āđˆāļ­āļœāļđāđ‰āđƒāļŠāđ‰āļ‹āļĩāļžāļĩāļĒāļđāđƒāļ™āļāļĨāļļāđˆāļĄ Ryzen 9000, Ryzen AI 300, Threadripper 9000, Ryzen Z2 āļĢāļ§āļĄāļ–āļķāļ‡ EPYC 9005 āđƒāļ™āļāļąāđˆāļ‡āđ€āļ‹āļīāļĢāđŒāļŸāđ€āļ§āļ­āļĢāđŒ āļ§āļīāļĻāļ§āļāļĢāļˆāļēāļ Meta āđ€āļ›āđ‡āļ™āļœāļđāđ‰āļ„āđ‰āļ™āļžāļšāļ›āļąāļāļŦāļēāļ™āļĩāđ‰āđāļĨāļ°āđāļˆāđ‰āļ‡āđ€āļ•āļ·āļ­āļ™āđ„āļ›āļĒāļąāļ‡ Linux Kernel Mailing List āļ—āļģāđƒāļŦāđ‰āļŠāļļāļĄāļŠāļ™ Linux āļ­āļ­āļāđāļžāļ•āļŠāđŒāđ€āļžāļ·āđˆāļ­āļ›āļīāļ”āļāļēāļĢāđƒāļŠāđ‰āļ‡āļēāļ™ RDSEED āļšāļ™ Zen 5 āļŠāļąāđˆāļ§āļ„āļĢāļēāļ§ āđāļĨāļ° AMD āļāđ‡āđ„āļ”āđ‰āļ›āļĢāļ°āļāļēāļĻāļ­āļ­āļāļ­āļąāļ›āđ€āļ”āļ•āđāļāđ‰āđ„āļ‚āļœāđˆāļēāļ™ AGESA firmware āļŠāđˆāļ§āļ‡āļ›āļĨāļēāļĒāđ€āļ”āļ·āļ­āļ™āļžāļĪāļĻāļˆāļīāļāļēāļĒāļ™ 2025 āđ‚āļ”āļĒāļˆāļ°āļ—āļĒāļ­āļĒāļ„āļĢāļ­āļšāļ„āļĨāļļāļĄāļ–āļķāļ‡āļ•āđ‰āļ™āļ›āļĩ 2026 āđƒāļ™āļŠāđˆāļ§āļ‡āļ™āļĩāđ‰ AMD āđāļ™āļ°āļ™āļģāđƒāļŦāđ‰āļœāļđāđ‰āđƒāļŠāđ‰āļŦāļĒāļļāļ”āđƒāļŠāđ‰ RDSEED āđāļšāļš 16-bit āđāļĨāļ° 32-bit āļŠāļąāđˆāļ§āļ„āļĢāļēāļ§ āđāļĨāļ°āļŦāļąāļ™āļĄāļēāđƒāļŠāđ‰ RDSEED āđāļšāļš 64-bit āļ—āļĩāđˆāļĒāļąāļ‡āļ›āļĨāļ­āļ”āļ āļąāļĒ āļŦāļĢāļ·āļ­āđ€āļĨāļ·āļ­āļāđƒāļŠāđ‰āļāļēāļĢāļŠāļļāđˆāļĄāđāļšāļšāļ‹āļ­āļŸāļ•āđŒāđāļ§āļĢāđŒāđāļ—āļ™ āļŠāļģāļŦāļĢāļąāļšāļœāļđāđ‰āđƒāļŠāđ‰ Linux āļ„āļ§āļĢāļ•āļīāļ”āļ•āļąāđ‰āļ‡āđāļžāļ•āļŠāđŒāļ—āļĩāđˆāļ›āļīāļ”āļāļēāļĢāđƒāļŠāđ‰āļ‡āļēāļ™āļ„āļģāļŠāļąāđˆāļ‡āļ™āļĩāđ‰āļāđˆāļ­āļ™āđ€āļžāļ·āđˆāļ­āļ„āļ§āļēāļĄāļ›āļĨāļ­āļ”āļ āļąāļĒ āļ™āļ­āļāļˆāļēāļāļ™āļĩāđ‰ āļœāļđāđ‰āđƒāļŠāđ‰āļ—āļąāđˆāļ§āđ„āļ›āđāļĄāđ‰āļ­āļēāļˆāļˆāļ°āđ„āļĄāđˆāđ„āļ”āđ‰āļĢāļąāļšāļœāļĨāļāļĢāļ°āļ—āļšāđ‚āļ”āļĒāļ•āļĢāļ‡ āđāļ•āđˆāđƒāļ™āđāļ‡āđˆāļ‚āļ­āļ‡āļĢāļ°āļšāļšāļ„āļ§āļēāļĄāļ›āļĨāļ­āļ”āļ āļąāļĒāđƒāļ™āļ­āļ‡āļ„āđŒāļāļĢāļŦāļĢāļ·āļ­āļ‡āļēāļ™āđ€āļ‚āđ‰āļēāļĢāļŦāļąāļŠāļ—āļĩāđˆāļ•āđ‰āļ­āļ‡āļĄāļĩāļ„āļ§āļēāļĄāļ™āđˆāļēāđ€āļŠāļ·āđˆāļ­āļ–āļ·āļ­āļŠāļđāļ‡ āļ„āļ§āļĢāļ•āļīāļ”āļ•āļēāļĄāļāļēāļĢāļ­āļąāļ›āđ€āļ”āļ• BIOS āļŦāļĢāļ·āļ­ UEFI āļˆāļēāļāļœāļđāđ‰āļœāļĨāļīāļ•āđ€āļĄāļ™āļšāļ­āļĢāđŒāļ” āđāļĨāļ°āļ—āļģāļāļēāļĢāļ­āļąāļ›āđ€āļ”āļ•āļ—āļąāļ™āļ—āļĩāđ€āļĄāļ·āđˆāļ­āļ•āļąāļ§āđāļāđ‰āđ„āļ‚āļ­āļ­āļāļĄāļē āđ€āļžāļ·āđˆāļ­āļ›āđ‰āļ­āļ‡āļāļąāļ™āļ„āļ§āļēāļĄāđ€āļŠāļĩāđˆāļĒāļ‡āļ”āđ‰āļēāļ™āļ„āļ§āļēāļĄāļ›āļĨāļ­āļ”āļ āļąāļĒāđƒāļ™āļ­āļ™āļēāļ„āļ• āļ”āđ‰āļ§āļĒāđ€āļŦāļ•āļļāļ™āļĩāđ‰ āļŦāļēāļāđƒāļ„āļĢāļāļģāļĨāļąāļ‡āđƒāļŠāđ‰āļ„āļ­āļĄāļžāļīāļ§āđ€āļ•āļ­āļĢāđŒāļ—āļĩāđˆāļĄāļĩāļ‹āļĩāļžāļĩāļĒāļđ AMD Zen 5 āļ„āļ§āļĢāļĢāļĩāļšāļ•āļĢāļ§āļˆāļŠāļ­āļšāļ‚āđˆāļēāļ§āļŠāļēāļĢāđāļĨāļ°āļ­āļąāļ›āđ€āļ”āļ•āđ€āļŸāļīāļĢāđŒāļĄāđāļ§āļĢāđŒāđƒāļŦāđ‰āļ—āļąāļ™āđ€āļ§āļĨāļē āđ€āļžāļĢāļēāļ°āļŠāđˆāļ­āļ‡āđ‚āļŦāļ§āđˆāļ™āļĩāđ‰āļ–āļķāļ‡āđāļĄāđ‰āļˆāļ°āļ”āļđāđ€āļ›āđ‡āļ™āđ€āļĢāļ·āđˆāļ­āļ‡āđ€āļŠāļīāļ‡āđ€āļ—āļ„āļ™āļīāļ„ āđāļ•āđˆāļāđ‡āļŠāđˆāļ‡āļœāļĨāļ•āđˆāļ­āļ„āļ§āļēāļĄāļ›āļĨāļ­āļ”āļ āļąāļĒāļšāļ™āđ‚āļĨāļāļ”āļīāļˆāļīāļ—āļąāļĨāļ­āļĒāđˆāļēāļ‡āđāļ—āđ‰āļˆāļĢāļīāļ‡