7.8
CVE-2021-26369
- EPSS 0.14%
- Published 12.05.2022 18:16:53
- Last modified 21.11.2024 05:56:13
- Source psirt@amd.com
- Teams watchlist Login
- Open Login
A malicious or compromised UApp or ABL may be used by an attacker to send a malformed system call to the bootloader, resulting in out-of-bounds memory accesses.
Data is provided by the National Vulnerability Database (NVD)
Amd ≫ Radeon Software Version-
Amd ≫ Athlon 3050ge Firmware Version-
Amd ≫ Athlon 3150g Firmware Version-
Amd ≫ Athlon 3150ge Firmware Version-
Amd ≫ Ryzen 3 2200u Firmware Version-
Amd ≫ Ryzen 3 2300u Firmware Version-
Amd ≫ Ryzen 3 3100 Firmware Version-
Amd ≫ Ryzen 3 3300g Firmware Version-
Amd ≫ Ryzen 3 3300x Firmware Version-
Amd ≫ Ryzen 3 5125c Firmware Version-
Amd ≫ Ryzen 3 5400u Firmware Version-
Amd ≫ Ryzen 3 5425c Firmware Version-
Amd ≫ Ryzen 3 5425u Firmware Version-
Amd ≫ Ryzen 5 2500u Firmware Version-
Amd ≫ Ryzen 5 2600 Firmware Version-
Amd ≫ Ryzen 5 2600h Firmware Version-
Amd ≫ Ryzen 5 2600x Firmware Version-
Amd ≫ Ryzen 5 3400g Firmware Version-
Amd ≫ Ryzen 5 3450g Firmware Version-
Amd ≫ Ryzen 5 3600 Firmware Version-
Amd ≫ Ryzen 5 3600x Firmware Version-
Amd ≫ Ryzen 5 5600h Firmware Version-
Amd ≫ Ryzen 5 5600hs Firmware Version-
Amd ≫ Ryzen 5 5600u Firmware Version-
Amd ≫ Ryzen 5 5600x Firmware Version-
Amd ≫ Ryzen 5 5625c Firmware Version-
Amd ≫ Ryzen 5 5625u Firmware Version-
Amd ≫ Ryzen 5 5700g Firmware Version-
Amd ≫ Ryzen 5 5700ge Firmware Version-
Amd ≫ Ryzen 7 2700 Firmware Version-
Amd ≫ Ryzen 7 2700u Firmware Version-
Amd ≫ Ryzen 7 2700x Firmware Version-
Amd ≫ Ryzen 7 2800h Firmware Version-
Amd ≫ Ryzen 7 3700x Firmware Version-
Amd ≫ Ryzen 7 3800x Firmware Version-
Amd ≫ Ryzen 7 5800h Firmware Version-
Amd ≫ Ryzen 7 5800hs Firmware Version-
Amd ≫ Ryzen 7 5800u Firmware Version-
Amd ≫ Ryzen 7 5825c Firmware Version-
Amd ≫ Ryzen 7 5825u Firmware Version-
Amd ≫ Ryzen 9 3900x Firmware Version-
Amd ≫ Ryzen 9 3950x Firmware Version-
Amd ≫ Ryzen 9 5900hs Firmware Version-
Amd ≫ Ryzen 9 5900hx Firmware Version-
Amd ≫ Ryzen 9 5980hs Firmware Version-
Amd ≫ Ryzen 9 5980hx Firmware Version-
Amd ≫ Ryzen Threadripper 2920x Firmware Version-
Amd ≫ Ryzen Threadripper 2950x Firmware Version-
Amd ≫ Ryzen Threadripper 2970wx Firmware Version-
Amd ≫ Ryzen Threadripper 2990wx Firmware Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.14% | 0.343 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
nvd@nist.gov | 4.6 | 3.9 | 6.4 |
AV:L/AC:L/Au:N/C:P/I:P/A:P
|
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer
The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.