CVE-2021-26371
CVE-2021-26371
A compromised or malicious ABL or UApp could
send a SHA256 system call to the bootloader, which may result in exposure of
ASP memory to userspace, potentially leading to information disclosure.
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Produtos afetados
AMD · 1st Gen AMD EPYC™ ProcessorsAMD · 2nd Gen AMD EPYC™ ProcessorsAMD · 3rd Gen AMD EPYC™ ProcessorsAMD · 3rd Gen AMD Ryzen™ Threadripper™ Processors “Castle Peak” HEDTAMD · AMD Ryzen™ 5000 Series Desktop Processors “Vermeer” AM4AMD · Athlon™ 3000 Series Mobile Processors with Radeon™ Graphics “Dali”/”Dali” ULPAMD · Athlon™ 3000 Series Mobile Processors with Radeon™ Graphics “Pollock”AMD · Ryzen™ 2000 series Desktop Processors “Raven Ridge” AM4AMD · Ryzen™ 2000 Series Mobile Processors “Raven Ridge” FP5AMD · Ryzen™ 3000 Series Desktop Processors “Matisse” AM4AMD · Ryzen™ 3000 Series Mobile processor, 2nd Gen AMD Ryzen™ Mobile Processors with Radeon™ Graphics “Picasso”AMD · Ryzen™ Threadripper™ PRO Processors “Castle Peak” WSAMD · Ryzen™ Threadripper™ PRO Processors “Chagall” WSQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →