7.8

CVE-2021-46757

Insufficient checking of memory buffer in ASP
Secure OS may allow an attacker with a malicious TA to read/write to the ASP
Secure OS kernel virtual address space potentially leading to privilege
escalation.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
AmdRyzen Embedded 5950e Firmware Version < embam4pi_1.0.0.0
   AmdRyzen Embedded 5950e Version-
AmdRyzen Embedded 5900e Firmware Version < embam4pi_1.0.0.0
   AmdRyzen Embedded 5900e Version-
AmdRyzen Embedded 5800e Firmware Version < embam4pi_1.0.0.0
   AmdRyzen Embedded 5800e Version-
AmdRyzen Embedded 5600e Firmware Version < embam4pi_1.0.0.0
   AmdRyzen Embedded 5600e Version-
AmdRyzen Embedded V2516 Firmware Version < embeddedpi-fp6_1.0.0.6
   AmdRyzen Embedded V2516 Version-
AmdRyzen Embedded V2546 Firmware Version < embeddedpi-fp6_1.0.0.6
   AmdRyzen Embedded V2546 Version-
AmdRyzen Embedded V2718 Firmware Version < embeddedpi-fp6_1.0.0.6
   AmdRyzen Embedded V2718 Version-
AmdRyzen Embedded V2748 Firmware Version < embeddedpi-fp6_1.0.0.6
   AmdRyzen Embedded V2748 Version-
AmdRyzen Embedded R2312 Firmware Version < embeddedpi-fp6_1.0.0.6
   AmdRyzen Embedded R2312 Version-
AmdRyzen Embedded R2314 Firmware Version < embeddedpi-fp6_1.0.0.6
   AmdRyzen Embedded R2314 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.08% 0.235
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
134c704f-9b21-4f2e-91b3-4a467353bcc0 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.