CVE-2021-46794
21Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 7.5epss 0.6%
exploitation probability
0.6%top 52% of all CVEs
observed exploitation
nono source reports it
Insufficient bounds checking in ASP (AMD Secure
Processor) may allow for an out of bounds read in SMI (System Management
Interface) mailbox checksum calculation triggering a data abort, resulting in a
potential denial of service.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Affected products
AMD · 3rd Gen AMD Ryzen™ Threadripper™ Processors “Castle Peak” HEDTAMD · AMD Ryzen™ 5000 Series Desktop Processors “Vermeer” AM4AMD · Athlon™ 3000 Series Mobile Processors with Radeon™ Graphics “Dali”/”Dali” ULPAMD · Athlon™ 3000 Series Mobile Processors with Radeon™ Graphics “Pollock”AMD · Ryzen™ 2000 series Desktop Processors “Raven Ridge” AM4AMD · Ryzen™ 2000 Series Mobile Processors “Raven Ridge” FP5AMD · Ryzen™ 3000 Series Desktop Processors “Matisse” AM4AMD · Ryzen™ 3000 Series Mobile processor, 2nd Gen AMD Ryzen™ Mobile Processors with Radeon™ Graphics “Picasso”AMD · Ryzen™ 3000 Series Mobile Processors with Radeon™ Graphics “Renoir”AMD · Ryzen™ 5000 Series Desktop processor with Radeon™ Graphics “Cezanne” AM4AMD · Ryzen™ 5000 Series Mobile processors with Radeon™ Graphics “Cezanne”AMD · Ryzen™ 5000 Series Mobile Processors with Radeon™ Graphics “Lucienne”AMD · Ryzen™ Threadripper™ PRO Processors “Castle Peak” WSAMD · Ryzen™ Threadripper™ PRO Processors “Chagall” WS