CVE-2021-26387
CVE-2021-26387
Insufficient access controls in ASP kernel may allow a
privileged attacker with access to AMD signing keys and the BIOS menu or UEFI
shell to map DRAM regions in protected areas, potentially leading to a loss of platform integrity.
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:N/I:L/A:L
Produtos afetados
AMD · AMD Athlon™ 3000 Series Desktop Processors with Radeon™ GraphicsAMD · AMD Athlon™ 3000 Series Mobile Processors with Radeon™ GraphicsAMD · AMD EPYC™ 7001 Series ProcessorsAMD · AMD EPYC™ 7002 Series ProcessorsAMD · AMD EPYC™ 7003 Series ProcessorsAMD · AMD EPYC™ 9004 Series ProcessorsAMD · AMD EPYC™ Embedded 3000 Series ProcessorsAMD · AMD EPYC™ Embedded 7002 Series ProcessorsAMD · AMD EPYC™ Embedded 7003 Series ProcessorsAMD · AMD EPYC™ Embedded 9003 Series ProcessorsAMD · AMD Ryzen™ 3000 Series Desktop ProcessorsAMD · AMD Ryzen™ 3000 Series Mobile Processor with Radeon™ GraphicsAMD · AMD Ryzen™ 3000 Series Processors with Radeon™ GraphicsAMD · AMD Ryzen™ 4000 Series Desktop Processors with Radeon™ GraphicsAMD · AMD Ryzen™ 4000 Series Mobile Processors with Radeon™ GraphicsAMD · AMD Ryzen™ 5000 Series Desktop ProcessorsAMD · AMD Ryzen™ 5000 Series Desktop Processor with Radeon™ GraphicsAMD · AMD Ryzen™ 5000 Series Mobile Processors with Radeon™ GraphicsAMD · AMD Ryzen™ 5000 Series Processors with Radeon™ GraphicsAMD · AMD Ryzen™ 6000 Series Processors with Radeon™ GraphicsAMD · AMD Ryzen™ 7000 Series Desktop ProcessorsAMD · AMD Ryzen™ 7035 Series Processors with Radeon™ GraphicsAMD · AMD Ryzen™ Embedded 5000 Series ProcessorsAMD · AMD Ryzen™ Embedded R1000 Series ProcessorsAMD · AMD Ryzen™ Embedded R2000 Series ProcessorsAMD · AMD Ryzen™ Embedded V1000 Series ProcessorsAMD · AMD Ryzen™ Embedded V2000 Series ProcessorsAMD · AMD Ryzen™ Embedded V3000 Series ProcessorsAMD · AMD Ryzen™ Threadripper™ 3000 Series ProcessorsAMD · AMD Ryzen™ Threadripper™ PRO 3000WX Series ProcessorsAMD · AMD Ryzen™ Threadripper™ PRO 5000WX ProcessorsQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →