5.5

CVE-2021-26388

Improper validation of the BIOS directory may allow for searches to read beyond the directory table copy in RAM, exposing out of bounds memory contents, resulting in a potential denial of service.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
AmdEpyc 7232p Firmware Version < romepi-sp3_1.0.0.d
   AmdEpyc 7232p Version-
AmdEpyc 7302p Firmware Version < romepi-sp3_1.0.0.d
   AmdEpyc 7302p Version-
AmdEpyc 7402p Firmware Version < romepi-sp3_1.0.0.d
   AmdEpyc 7402p Version-
AmdEpyc 7502p Firmware Version < romepi-sp3_1.0.0.d
   AmdEpyc 7502p Version-
AmdEpyc 7702p Firmware Version < romepi-sp3_1.0.0.d
   AmdEpyc 7702p Version-
AmdEpyc 7252 Firmware Version < romepi-sp3_1.0.0.d
   AmdEpyc 7252 Version-
AmdEpyc 7262 Firmware Version < romepi-sp3_1.0.0.d
   AmdEpyc 7262 Version-
AmdEpyc 7272 Firmware Version < romepi-sp3_1.0.0.d
   AmdEpyc 7272 Version-
AmdEpyc 7282 Firmware Version < romepi-sp3_1.0.0.d
   AmdEpyc 7282 Version-
AmdEpyc 7302 Firmware Version < romepi-sp3_1.0.0.d
   AmdEpyc 7302 Version-
AmdEpyc 7352 Firmware Version < romepi-sp3_1.0.0.d
   AmdEpyc 7352 Version-
AmdEpyc 7402 Firmware Version < romepi-sp3_1.0.0.d
   AmdEpyc 7402 Version-
AmdEpyc 7452 Firmware Version < romepi-sp3_1.0.0.d
   AmdEpyc 7452 Version-
AmdEpyc 7502 Firmware Version < romepi-sp3_1.0.0.d
   AmdEpyc 7502 Version-
AmdEpyc 7532 Firmware Version < romepi-sp3_1.0.0.d
   AmdEpyc 7532 Version-
AmdEpyc 7542 Firmware Version < romepi-sp3_1.0.0.d
   AmdEpyc 7542 Version-
AmdEpyc 7552 Firmware Version < romepi-sp3_1.0.0.d
   AmdEpyc 7552 Version-
AmdEpyc 7642 Firmware Version < romepi-sp3_1.0.0.d
   AmdEpyc 7642 Version-
AmdEpyc 7662 Firmware Version < romepi-sp3_1.0.0.d
   AmdEpyc 7662 Version-
AmdEpyc 7702 Firmware Version < romepi-sp3_1.0.0.d
   AmdEpyc 7702 Version-
AmdEpyc 7742 Firmware Version < romepi-sp3_1.0.0.d
   AmdEpyc 7742 Version-
AmdEpyc 7f32 Firmware Version < romepi-sp3_1.0.0.d
   AmdEpyc 7f32 Version-
AmdEpyc 7f52 Firmware Version < romepi-sp3_1.0.0.d
   AmdEpyc 7f52 Version-
AmdEpyc 7f72 Firmware Version < romepi-sp3_1.0.0.d
   AmdEpyc 7f72 Version-
AmdEpyc 7f32 Firmware Version < romepi-sp3_1.0.0.d
   AmdEpyc 7f32 Version-
AmdEpyc 7f52 Firmware Version < romepi-sp3_1.0.0.d
   AmdEpyc 7f52 Version-
AmdEpyc 7f72 Firmware Version < romepi-sp3_1.0.0.d
   AmdEpyc 7f72 Version-
AmdEpyc 7313p Firmware Version < milanpi-sp3_1.0.0.7
   AmdEpyc 7313p Version-
AmdEpyc 7443p Firmware Version < milanpi-sp3_1.0.0.7
   AmdEpyc 7443p Version-
AmdEpyc 7543p Firmware Version < milanpi-sp3_1.0.0.7
   AmdEpyc 7543p Version-
AmdEpyc 7713p Firmware Version < milanpi-sp3_1.0.0.7
   AmdEpyc 7713p Version-
AmdEpyc 7773x Firmware Version < milanpi-sp3_1.0.0.7
   AmdEpyc 7773x Version-
AmdEpyc 7763 Firmware Version < milanpi-sp3_1.0.0.7
   AmdEpyc 7763 Version-
AmdEpyc 7713 Firmware Version < milanpi-sp3_1.0.0.7
   AmdEpyc 7713 Version-
AmdEpyc 7663 Firmware Version < milanpi-sp3_1.0.0.7
   AmdEpyc 7663 Version-
AmdEpyc 7643 Firmware Version < milanpi-sp3_1.0.0.7
   AmdEpyc 7643 Version-
AmdEpyc 7573x Firmware Version < milanpi-sp3_1.0.0.7
   AmdEpyc 7573x Version-
AmdEpyc 75f3 Firmware Version < milanpi-sp3_1.0.0.7
   AmdEpyc 75f3 Version-
AmdEpyc 7513 Firmware Version < milanpi-sp3_1.0.0.7
   AmdEpyc 7513 Version-
AmdEpyc 7473x Firmware Version < milanpi-sp3_1.0.0.7
   AmdEpyc 7473x Version-
AmdEpyc 7453 Firmware Version < milanpi-sp3_1.0.0.7
   AmdEpyc 7453 Version-
AmdEpyc 74f3 Firmware Version < milanpi-sp3_1.0.0.7
   AmdEpyc 74f3 Version-
AmdEpyc 7413 Firmware Version < milanpi-sp3_1.0.0.7
   AmdEpyc 7413 Version-
AmdEpyc 73f3 Firmware Version < milanpi-sp3_1.0.0.7
   AmdEpyc 73f3 Version-
AmdEpyc 7373x Firmware Version < milanpi-sp3_1.0.0.7
   AmdEpyc 7373x Version-
AmdEpyc 7343 Firmware Version < milanpi-sp3_1.0.0.7
   AmdEpyc 7343 Version-
AmdEpyc 72f3 Firmware Version < milanpi-sp3_1.0.0.7
   AmdEpyc 72f3 Version-
AmdRyzen 7 2700x Firmware Version < comboam4_v2_pi_1.2.0.6c
   AmdRyzen 7 2700x Version-
AmdRyzen 7 2700x Firmware Version < comboam4pi_1.0.0.8
   AmdRyzen 7 2700x Version-
AmdRyzen 7 2700 Firmware Version < comboam4pi_1.0.0.8
   AmdRyzen 7 2700 Version-
AmdRyzen 7 2700 Firmware Version < comboam4_v2_pi_1.2.0.6c
   AmdRyzen 7 2700 Version-
AmdRyzen 5 2600x Firmware Version < comboam4_v2_pi_1.2.0.6c
   AmdRyzen 5 2600x Version-
AmdRyzen 5 2600x Firmware Version < comboam4pi_1.0.0.8
   AmdRyzen 5 2600x Version-
AmdRyzen 5 2700 Firmware Version < comboam4pi_1.0.0.8
   AmdRyzen 5 2700 Version-
AmdRyzen 5 2700 Firmware Version < comboam4_v2_pi_1.2.0.6c
   AmdRyzen 5 2700 Version-
AmdRyzen 3 3100 Firmware Version < comboam4pi_1.0.0.8
   AmdRyzen 3 3100 Version-
AmdRyzen 3 3100 Firmware Version < comboam4_v2_pi_1.2.0.6c
   AmdRyzen 3 3300 Version-
AmdRyzen 3 3300x Firmware Version < comboam4pi_1.0.0.8
   AmdRyzen 3 3300x Version-
AmdRyzen 3 3300x Firmware Version < comboam4_v2_pi_1.2.0.6c
   AmdRyzen 3 3300x Version-
AmdRyzen 9 5950x Firmware Version < comboam4_v2_pi_1.2.0.6c
   AmdRyzen 9 5950x Version-
AmdRyzen 7 5800x3d Firmware Version < comboam4_v2_pi_1.2.0.6c
   AmdRyzen 7 5800x3d Version-
AmdRyzen 9 5900x Firmware Version < comboam4_v2_pi_1.2.0.6c
   AmdRyzen 9 5900x Version-
AmdRyzen 7 5800x Firmware Version < comboam4_v2_pi_1.2.0.6c
   AmdRyzen 7 5800x Version-
AmdRyzen 5 5600x Firmware Version < comboam4_v2_pi_1.2.0.6c
   AmdRyzen 5 5600x Version-
AmdRyzen 7 5700x Firmware Version < comboam4_v2_pi_1.2.0.6c
   AmdRyzen 7 5700x Version-
AmdRyzen 5 5600 Firmware Version < comboam4_v2_pi_1.2.0.6c
   AmdRyzen 5 5600 Version-
AmdRyzen 5 5500 Firmware Version < comboam4_v2_pi_1.2.0.6c
   AmdRyzen 5 5500 Version-
AmdRyzen 7 5700g Firmware Version < comboam4_v2_pi_1.2.0.6c
   AmdRyzen 7 5700g Version-
AmdRyzen 5 5600g Firmware Version < comboam4_v2_pi_1.2.0.6c
   AmdRyzen 5 5600g Version-
AmdRyzen Threadripper 2990wx Firmware Version < summitpi-sp3r2_1.1.0.5
   AmdRyzen Threadripper 2990wx Version-
AmdRyzen Threadripper 2970wx Firmware Version < summitpi-sp3r2_1.1.0.5
   AmdRyzen Threadripper 2970wx Version-
AmdRyzen Threadripper 2950x Firmware Version < summitpi-sp3r2_1.1.0.5
   AmdRyzen Threadripper 2950x Version-
AmdRyzen Threadripper 2920x Firmware Version < summitpi-sp3r2_1.1.0.5
   AmdRyzen Threadripper 2920x Version-
AmdRyzen Threadripper 3990x Firmware Version < castlepeakpi-sp3r3_1.0.0.7
   AmdRyzen Threadripper 3990x Version-
AmdRyzen Threadripper 3970x Firmware Version < castlepeakpi-sp3r3_1.0.0.7
   AmdRyzen Threadripper 3970x Version-
AmdRyzen Threadripper 3960x Firmware Version < castlepeakpi-sp3r3_1.0.0.7
   AmdRyzen Threadripper 3960x Version-
AmdRyzen Threadripper 2990wx Firmware Version < castlepeakpi-sp3r3_1.0.0.7
   AmdRyzen Threadripper 2990wx Version-
AmdRyzen Threadripper 2970wx Firmware Version < castlepeakpi-sp3r3_1.0.0.7
   AmdRyzen Threadripper 2970wx Version-
AmdRyzen Threadripper 2950x Firmware Version < castlepeakpi-sp3r3_1.0.0.7
   AmdRyzen Threadripper 2950x Version-
AmdRyzen Threadripper 2920x Firmware Version < castlepeakpi-sp3r3_1.0.0.7
   AmdRyzen Threadripper 2920x Version-
AmdRyzen Threadripper 1950x Firmware Version < castlepeakpi-sp3r3_1.0.0.7
   AmdRyzen Threadripper 1950x Version-
AmdRyzen Threadripper 1920x Firmware Version < castlepeakpi-sp3r3_1.0.0.7
   AmdRyzen Threadripper 1920x Version-
AmdRyzen Threadripper 1900x Firmware Version < castlepeakpi-sp3r3_1.0.0.7
   AmdRyzen Threadripper 1900x Version-
AmdRyzen Threadripper Pro 3945wx Firmware Version < chagallwspi-swrx8_1.0.0.2
AmdRyzen Threadripper Pro 3955wx Firmware Version < chagallwspi-swrx8_1.0.0.2
AmdRyzen Threadripper Pro 3975wx Firmware Version < chagallwspi-swrx8_1.0.0.2
AmdRyzen Threadripper Pro 3995wx Firmware Version < chagallwspi-swrx8_1.0.0.2
AmdRyzen Threadripper Pro 5945wx Firmware Version < chagallwspi-swrx8_1.0.0.2
AmdRyzen Threadripper Pro 5955wx Firmware Version < chagallwspi-swrx8_1.0.0.2
AmdRyzen Threadripper Pro 5965wx Firmware Version < chagallwspi-swrx8_1.0.0.2
AmdRyzen Threadripper Pro 5975wx Firmware Version < chagallwspi-swrx8_1.0.0.2
AmdRyzen Threadripper Pro 5995wx Firmware Version < chagallwspi-swrx8_1.0.0.2
AmdRyzen Threadripper Pro 3945wx Firmware Version < castlepeakwspi-swrx8_1.0.0.9
AmdRyzen Threadripper Pro 3955wx Firmware Version < castlepeakwspi-swrx8_1.0.0.9
AmdRyzen Threadripper Pro 3975wx Firmware Version < castlepeakwspi-swrx8_1.0.0.9
AmdRyzen Threadripper Pro 3995wx Firmware Version < castlepeakwspi-swrx8_1.0.0.9
AmdRyzen Threadripper Pro 5945wx Firmware Version < castlepeakwspi-swrx8_1.0.0.9
AmdRyzen Threadripper Pro 5955wx Firmware Version < castlepeakwspi-swrx8_1.0.0.9
AmdRyzen Threadripper Pro 5965wx Firmware Version < castlepeakwspi-swrx8_1.0.0.9
AmdRyzen Threadripper Pro 5975wx Firmware Version < castlepeakwspi-swrx8_1.0.0.9
AmdRyzen Threadripper Pro 5995wx Firmware Version < castlepeakwspi-swrx8_1.0.0.9
AmdRyzen 3 2200u Firmware Version < raven-fp5-am4_1.1.0.e
   AmdRyzen 3 2200u Version-
AmdRyzen 3 2300u Firmware Version < raven-fp5-am4_1.1.0.e
   AmdRyzen 3 2300u Version-
AmdRyzen 5 2500u Firmware Version < raven-fp5-am4_1.1.0.e
   AmdRyzen 5 2500u Version-
AmdRyzen 5 2600h Firmware Version < raven-fp5-am4_1.1.0.e
   AmdRyzen 5 2600h Version-
AmdRyzen 7 2700u Firmware Version < raven-fp5-am4_1.1.0.e
   AmdRyzen 7 2700u Version-
AmdRyzen 7 2800h Firmware Version < raven-fp5-am4_1.1.0.e
   AmdRyzen 7 2800h Version-
AmdRyzen 3 2200u Firmware Version < pinnaclepi-am4_1.0.0.c_\(rv1\)
   AmdRyzen 3 2200u Version-
AmdRyzen 3 2300u Firmware Version < pinnaclepi-am4_1.0.0.c_\(rv1\)
   AmdRyzen 3 2300u Version-
AmdRyzen 5 2500u Firmware Version < pinnaclepi-am4_1.0.0.c_\(rv1\)
   AmdRyzen 5 2500u Version-
AmdRyzen 5 2600h Firmware Version < pinnaclepi-am4_1.0.0.c_\(rv1\)
   AmdRyzen 5 2600h Version-
AmdRyzen 7 2700u Firmware Version < pinnaclepi-am4_1.0.0.c_\(rv1\)
   AmdRyzen 7 2700u Version-
AmdRyzen 7 2800h Firmware Version < comboam4pi_1.0.0.8
   AmdRyzen 7 2800h Version-
AmdRyzen 3 2200u Firmware Version < comboam4pi_1.0.0.8
   AmdRyzen 3 2200u Version-
AmdRyzen 3 2300u Firmware Version < comboam4pi_1.0.0.8
   AmdRyzen 3 2300u Version-
AmdRyzen 5 2500u Firmware Version < comboam4pi_1.0.0.8
   AmdRyzen 5 2500u Version-
AmdRyzen 5 2600h Firmware Version < comboam4pi_1.0.0.8
   AmdRyzen 5 2600h Version-
AmdRyzen 7 2700u Firmware Version < comboam4pi_1.0.0.8
   AmdRyzen 7 2700u Version-
AmdRyzen 7 2800h Firmware Version < comboam4v2_pi_1.2.0.6c
   AmdRyzen 7 2800h Version-
AmdRyzen 3 2200u Firmware Version < comboam4v2_pi_1.2.0.6c
   AmdRyzen 3 2200u Version-
AmdRyzen 3 2300u Firmware Version < comboam4v2_pi_1.2.0.6c
   AmdRyzen 3 2300u Version-
AmdRyzen 5 2500u Firmware Version < comboam4v2_pi_1.2.0.6c
   AmdRyzen 5 2500u Version-
AmdRyzen 5 2600h Firmware Version < comboam4v2_pi_1.2.0.6c
   AmdRyzen 5 2600h Version-
AmdRyzen 7 2700u Firmware Version < comboam4v2_pi_1.2.0.6c
   AmdRyzen 7 2700u Version-
AmdRyzen 7 2800h Firmware Version < comboam4v2_pi_1.2.0.6c
   AmdRyzen 7 2800h Version-
AmdRyzen 3 2200u Firmware Version < picassopi-fp5_1.0.0.d
   AmdRyzen 3 2200u Version-
AmdRyzen 3 2300u Firmware Version < picassopi-fp5_1.0.0.d
   AmdRyzen 3 2300u Version-
AmdRyzen 5 2500u Firmware Version < picassopi-fp5_1.0.0.d
   AmdRyzen 5 2500u Version-
AmdRyzen 5 2600h Firmware Version < picassopi-fp5_1.0.0.d
   AmdRyzen 5 2600h Version-
AmdRyzen 7 2700u Firmware Version < picassopi-fp5_1.0.0.d
   AmdRyzen 7 2700u Version-
AmdRyzen 7 2800h Firmware Version < picassopi-fp5_1.0.0.d
   AmdRyzen 7 2800h Version-
AmdRyzen 3 3200u Firmware Version < comboam4pi_1.0.0.8
   AmdRyzen 3 3200u Version-
AmdRyzen 3 3250u Firmware Version < comboam4pi_1.0.0.8
   AmdRyzen 3 3250u Version-
AmdRyzen 3 3200u Firmware Version < comboam4v2_pi_1.2.0.6c
   AmdRyzen 3 3200u Version-
AmdRyzen 3 3250u Firmware Version < comboam4v2_pi_1.2.0.6c
   AmdRyzen 3 3250u Version-
AmdRyzen 3 3200u Firmware Version < renoirpi-fp6_1.0.0.7
   AmdRyzen 3 3200u Version-
AmdRyzen 3 3250u Firmware Version < renoirpi-fp6_1.0.0.7
   AmdRyzen 3 3250u Version-
AmdRyzen 7 2700x Firmware Version < raven-fp5-am4_1.1.0.e
   AmdRyzen 7 2700x Version-
AmdRyzen 7 2700x Firmware Version < raven-fp5-am4_1.1.0.e
   AmdRyzen 7 2700x Version-
AmdRyzen 7 2700 Firmware Version < raven-fp5-am4_1.1.0.e
   AmdRyzen 7 2700 Version-
AmdRyzen 7 2700 Firmware Version < raven-fp5-am4_1.1.0.e
   AmdRyzen 7 2700 Version-
AmdRyzen 3 5300u Firmware Version < cezannepi-fp6_1.0.0._9a
   AmdRyzen 3 5300u Version-
AmdRyzen 5 5500u Firmware Version < cezannepi-fp6_1.0.0._9a
   AmdRyzen 5 5500u Version-
AmdRyzen 7 5700u Firmware Version < cezannepi-fp6_1.0.0._9a
   AmdRyzen 7 5700u Version-
AmdRyzen 3 5125c Firmware Version < cezannepi-fp6_1.0.0.9
   AmdRyzen 3 5125c Version-
AmdRyzen 3 5400u Firmware Version < cezannepi-fp6_1.0.0.9
   AmdRyzen 3 5400u Version-
AmdRyzen 3 5425u Firmware Version < cezannepi-fp6_1.0.0.9
   AmdRyzen 3 5425u Version-
AmdRyzen 5 5560u Firmware Version < cezannepi-fp6_1.0.0.9
   AmdRyzen 5 5560u Version-
AmdRyzen 5 5600u Firmware Version < cezannepi-fp6_1.0.0.9
   AmdRyzen 5 5600u Version-
AmdRyzen 5 5625u Firmware Version < cezannepi-fp6_1.0.0.9
   AmdRyzen 5 5625u Version-
AmdRyzen 5 5600h Firmware Version < cezannepi-fp6_1.0.0.9
   AmdRyzen 5 5600h Version-
AmdRyzen 5 5600hs Firmware Version < cezannepi-fp6_1.0.0.9
   AmdRyzen 5 5600hs Version-
AmdRyzen 7 5800u Firmware Version < cezannepi-fp6_1.0.0.9
   AmdRyzen 7 5800u Version-
AmdRyzen 7 5825u Firmware Version < cezannepi-fp6_1.0.0.9
   AmdRyzen 7 5825u Version-
AmdRyzen 7 5800h Firmware Version < cezannepi-fp6_1.0.0.9
   AmdRyzen 7 5800h Version-
AmdRyzen 7 5800hs Firmware Version < cezannepi-fp6_1.0.0.9
   AmdRyzen 7 5800hs Version-
AmdRyzen 9 5900hs Firmware Version < cezannepi-fp6_1.0.0.9
   AmdRyzen 9 5900hs Version-
AmdRyzen 9 5900hx Firmware Version < cezannepi-fp6_1.0.0.9
   AmdRyzen 9 5900hx Version-
AmdRyzen 9 5980hs Firmware Version < cezannepi-fp6_1.0.0.9
   AmdRyzen 9 5980hs Version-
AmdRyzen 9 5980hx Firmware Version < cezannepi-fp6_1.0.0.9
   AmdRyzen 9 5980hx Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.12% 0.314
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 5.5 1.8 3.6
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
nvd@nist.gov 4.9 3.9 6.9
AV:L/AC:L/Au:N/C:N/I:N/A:C
CWE-125 Out-of-bounds Read

The product reads data past the end, or before the beginning, of the intended buffer.