Bulletin ID: AMP-SB-0006
CVE-2022-46892
Systems that use OS to disable root port.
Depending on platform configuration, reenabling root ports may provide unintended access.
Low Severity
CVSS Score: 3.6
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:L
A Root complex is typically disabled during boot via the BIOS. However, the OS can overwrite the DSDT ACPI table to reinitialize the Root Complex. Reported by Oracle and discovered by internal Oracle security researcher Hugo Magalhaes.
SRP 2.10c
Ampere® Altra® and Ampere® Altra®Max
Update SRP to 2.10c