5.5

CVE-2021-26352

Insufficient bound checks in System Management Unit (SMU) PCIe Hot Plug table may result in access/updates from/to invalid address space that could result in denial of service.

Data is provided by the National Vulnerability Database (NVD)
AmdRyzen 5 2600 Firmware Version-
   AmdRyzen 5 2600 Version-
AmdRyzen 5 2600x Firmware Version-
   AmdRyzen 5 2600x Version-
AmdRyzen 5 2700x Firmware Version-
   AmdRyzen 5 2700x Version-
AmdRyzen 5 2700 Firmware Version-
   AmdRyzen 5 2700 Version-
AmdRyzen 5 3600 Firmware Version-
   AmdRyzen 5 3600 Version-
AmdRyzen 5 3600x Firmware Version-
   AmdRyzen 5 3600x Version-
AmdRyzen 7 3700x Firmware Version-
   AmdRyzen 7 3700x Version-
AmdRyzen 7 3800x Firmware Version-
   AmdRyzen 7 3800x Version-
AmdRyzen 9 3900x Firmware Version-
   AmdRyzen 9 3900x Version-
AmdRyzen 9 3950x Firmware Version-
   AmdRyzen 9 3950x Version-
AmdRyzen 9 5950x Firmware Version-
   AmdRyzen 9 5950x Version-
AmdRyzen 9 5900x Firmware Version-
   AmdRyzen 9 5900x Version-
AmdRyzen 7 5800x Firmware Version-
   AmdRyzen 7 5800x Version-
AmdRyzen 7 5700g Firmware Version-
   AmdRyzen 7 5700g Version-
AmdRyzen 7 5700ge Firmware Version-
   AmdRyzen 7 5700ge Version-
AmdRyzen 5 5600g Firmware Version-
   AmdRyzen 5 5600g Version-
AmdRyzen 5 5600x Firmware Version-
   AmdRyzen 5 5600x Version-
AmdRyzen 5 5600ge Firmware Version-
   AmdRyzen 5 5600ge Version-
AmdRyzen 3 5300g Firmware Version-
   AmdRyzen 3 5300g Version-
AmdRyzen 3 5300ge Firmware Version-
   AmdRyzen 3 5300ge Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.13% 0.327
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5.5 1.8 3.6
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
nvd@nist.gov 4.9 3.9 6.9
AV:L/AC:L/Au:N/C:N/I:N/A:C
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.