8.2
CVE-2021-26344
- EPSS 0.05%
- Published 13.08.2024 17:15:17
- Last modified 18.03.2025 16:15:12
- Source psirt@amd.com
- Teams watchlist Login
- Open Login
An out of bounds memory write when processing the AMD PSP1 Configuration Block (APCB) could allow an attacker with access the ability to modify the BIOS image, and the ability to sign the resulting image, to potentially modify the APCB block resulting in arbitrary code execution.
Data is provided by the National Vulnerability Database (NVD)
Amd ≫ Epyc 7203 Firmware Version < milanpi_1.0.0.5
Amd ≫ Epyc 7203p Firmware Version < milanpi_1.0.0.5
Amd ≫ Epyc 72f3 Firmware Version < milanpi_1.0.0.5
Amd ≫ Epyc 7303 Firmware Version < milanpi_1.0.0.5
Amd ≫ Epyc 7303p Firmware Version < milanpi_1.0.0.5
Amd ≫ Epyc 7313 Firmware Version < milanpi_1.0.0.5
Amd ≫ Epyc 7313p Firmware Version < milanpi_1.0.0.5
Amd ≫ Epyc 7343 Firmware Version < milanpi_1.0.0.5
Amd ≫ Epyc 73f3 Firmware Version < milanpi_1.0.0.5
Amd ≫ Epyc 7373x Firmware Version < milanpi_1.0.0.5
Amd ≫ Epyc 7413 Firmware Version < milanpi_1.0.0.5
Amd ≫ Epyc 7443 Firmware Version < milanpi_1.0.0.5
Amd ≫ Epyc 7443p Firmware Version < milanpi_1.0.0.5
Amd ≫ Epyc 74f3 Firmware Version < milanpi_1.0.0.5
Amd ≫ Epyc 7453 Firmware Version < milanpi_1.0.0.5
Amd ≫ Epyc 7473x Firmware Version < milanpi_1.0.0.5
Amd ≫ Epyc 7513 Firmware Version < milanpi_1.0.0.5
Amd ≫ Epyc 7543 Firmware Version < milanpi_1.0.0.5
Amd ≫ Epyc 7543p Firmware Version < milanpi_1.0.0.5
Amd ≫ Epyc 75f3 Firmware Version < milanpi_1.0.0.5
Amd ≫ Epyc 7573x Firmware Version < milanpi_1.0.0.5
Amd ≫ Epyc 7643 Firmware Version < milanpi_1.0.0.5
Amd ≫ Epyc 7773x Firmware Version < milanpi_1.0.0.5
Amd ≫ Epyc 7643p Firmware Version < milanpi_1.0.0.5
Amd ≫ Epyc 7663 Firmware Version < milanpi_1.0.0.5
Amd ≫ Epyc 7663p Firmware Version < milanpi_1.0.0.5
Amd ≫ Epyc 7713 Firmware Version < milanpi_1.0.0.5
Amd ≫ Epyc 7713p Firmware Version < milanpi_1.0.0.5
Amd ≫ Epyc 7763 Firmware Version < milanpi_1.0.0.5
Amd ≫ Epyc 7h12 Firmware Version < romepi_1.0.0.c
Amd ≫ Epyc 7f72 Firmware Version < romepi_1.0.0.c
Amd ≫ Epyc 7f52 Firmware Version < romepi_1.0.0.c
Amd ≫ Epyc 7f32 Firmware Version < romepi_1.0.0.c
Amd ≫ Epyc 7742 Firmware Version < romepi_1.0.0.c
Amd ≫ Epyc 7702p Firmware Version < romepi_1.0.0.c
Amd ≫ Epyc 7702 Firmware Version < romepi_1.0.0.c
Amd ≫ Epyc 7662 Firmware Version < romepi_1.0.0.c
Amd ≫ Epyc 7642 Firmware Version < romepi_1.0.0.c
Amd ≫ Epyc 7552 Firmware Version < romepi_1.0.0.c
Amd ≫ Epyc 7542 Firmware Version < romepi_1.0.0.c
Amd ≫ Epyc 7532 Firmware Version < romepi_1.0.0.c
Amd ≫ Epyc 7502p Firmware Version < romepi_1.0.0.c
Amd ≫ Epyc 7502 Firmware Version < romepi_1.0.0.c
Amd ≫ Epyc 7452 Firmware Version < romepi_1.0.0.c
Amd ≫ Epyc 7402p Firmware Version < romepi_1.0.0.c
Amd ≫ Epyc 7402 Firmware Version < romepi_1.0.0.c
Amd ≫ Epyc 7352 Firmware Version < romepi_1.0.0.c
Amd ≫ Epyc 7302p Firmware Version < romepi_1.0.0.c
Amd ≫ Epyc 7302 Firmware Version < romepi_1.0.0.c
Amd ≫ Epyc 7282 Firmware Version < romepi_1.0.0.c
Amd ≫ Epyc 7272 Firmware Version < romepi_1.0.0.c
Amd ≫ Epyc 7262 Firmware Version < romepi_1.0.0.c
Amd ≫ Epyc 7252 Firmware Version < romepi_1.0.0.c
Amd ≫ Epyc 7232p Firmware Version < romepi_1.0.0.c
Amd ≫ Epyc 7601 Firmware Version-
Amd ≫ Epyc 7551p Firmware Version-
Amd ≫ Epyc 7551 Firmware Version-
Amd ≫ Epyc 7501 Firmware Version-
Amd ≫ Epyc 7451 Firmware Version-
Amd ≫ Epyc 7401p Firmware Version-
Amd ≫ Epyc 7401 Firmware Version-
Amd ≫ Epyc 7371 Firmware Version-
Amd ≫ Epyc 7351p Firmware Version-
Amd ≫ Epyc 7351 Firmware Version-
Amd ≫ Epyc 7301 Firmware Version-
Amd ≫ Epyc 7281 Firmware Version-
Amd ≫ Epyc 7261 Firmware Version-
Amd ≫ Epyc 7251 Firmware Version-
Amd ≫ Epyc 7001 Firmware Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.05% | 0.168 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 8.2 | 1.5 | 6 |
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
|
psirt@amd.com | 7.2 | 0.6 | 6 |
CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:C/C:H/I:H/A:H
|
CWE-787 Out-of-bounds Write
The product writes data past the end, or before the beginning, of the intended buffer.