CVE-2025-62863
Ampere AmpereOne AC03 devices before 3.5.9.3, AmpereOne AC04 devices before 4.4.5.2, and AmpereOne M devices before 5.4.5.1 allow an incorrectly formed SMC call to UEFI-MM PCIe driver that could result in an out-of-bounds write within PCIe driver’s S-EL0 address space.
Published:Dec 16, 2025
Last Modified:Jan 13, 2026
EPS:Dec 16, 2025
EPSS Score:0.00056
CVSS Score:9.8
Affected Products
Vendor
Product
Action
Vendor
Amperecomputing
Product
Ampereone
Amperecomputing
Ampereone
Vendor
Amperecomputing
Product
Ampereone A128-34x
Amperecomputing
Ampereone A128-34x
Vendor
Amperecomputing
Product
Ampereone A128-34x Firmware
Amperecomputing
Ampereone A128-34x Firmware
Vendor
Amperecomputing
Product
Ampereone A144-24x
Amperecomputing
Ampereone A144-24x
Vendor
Amperecomputing
Product
Ampereone A144-24x Firmware
Amperecomputing
Ampereone A144-24x Firmware
Vendor
Amperecomputing
Product
Ampereone A144-26m
Amperecomputing
Ampereone A144-26m
Vendor
Amperecomputing
Product
Ampereone A144-26m Firmware
Amperecomputing
Ampereone A144-26m Firmware
Vendor
Amperecomputing
Product
Ampereone A144-27x
Amperecomputing
Ampereone A144-27x
Vendor
Amperecomputing
Product
Ampereone A144-27x Firmware
Amperecomputing
Ampereone A144-27x Firmware
Vendor
Amperecomputing
Product
Ampereone A144-33m
Amperecomputing
Ampereone A144-33m
Vendor
Amperecomputing
Product
Ampereone A144-33m Firmware
Amperecomputing
Ampereone A144-33m Firmware
Vendor
Amperecomputing
Product
Ampereone A160-28m
Amperecomputing
Ampereone A160-28m
Vendor
Amperecomputing
Product
Ampereone A160-28m Firmware
Amperecomputing
Ampereone A160-28m Firmware
Vendor
Amperecomputing
Product
Ampereone A160-28x
Amperecomputing
Ampereone A160-28x
Vendor
Amperecomputing
Product
Ampereone A160-28x Firmware
Amperecomputing
Ampereone A160-28x Firmware
Vendor
Amperecomputing
Product
Ampereone A192-26m
Amperecomputing
Ampereone A192-26m
Vendor
Amperecomputing
Product
Ampereone A192-26m Firmware
Amperecomputing
Ampereone A192-26m Firmware
Vendor
Amperecomputing
Product
Ampereone A192-26x
Amperecomputing
Ampereone A192-26x
Vendor
Amperecomputing
Product
Ampereone A192-26x Firmware
Amperecomputing
Ampereone A192-26x Firmware
Vendor
Amperecomputing
Product
Ampereone A192-32m
Amperecomputing
Ampereone A192-32m
Vendor
Amperecomputing
Product
Ampereone A192-32m Firmware
Amperecomputing
Ampereone A192-32m Firmware
Vendor
Amperecomputing
Product
Ampereone A192-32x
Amperecomputing
Ampereone A192-32x
Vendor
Amperecomputing
Product
Ampereone A192-32x Firmware
Amperecomputing
Ampereone A192-32x Firmware
Vendor
Amperecomputing
Product
Ampereone A96-36m
Amperecomputing
Ampereone A96-36m
Vendor
Amperecomputing
Product
Ampereone A96-36m Firmware
Amperecomputing
Ampereone A96-36m Firmware
Vendor
Amperecomputing
Product
Ampereone A96-36x
Amperecomputing
Ampereone A96-36x
Vendor
Amperecomputing
Product
Ampereone A96-36x Firmware
Amperecomputing
Ampereone A96-36x Firmware
Exploits
No exploit reference
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
No CAPEC recorded yet
Related CVEs
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
