PT-2023-12574 · Amd · 3Rd Gen Amd Ryzen™ Threadripper™ Processors “Castle Peak” Hedt+8
Publicado
2023-05-09
·
Atualizado
2023-05-22
·
CVE-2021-46760
CVSS v3.1
9.8
Crítica
| Vetor | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
No specific software or versions are mentioned in the provided descriptions.
Description
A malicious or compromised UApp or ABL can send a malformed system call to the bootloader, which may result in an out-of-bounds memory access. This could potentially lead to an attacker leaking sensitive information or achieving code execution.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Allocation of Resources Without Limits
Buffer Overflow
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
3Rd Gen Amd Ryzen™ Threadripper™ Processors “Castle Peak” Hedt
Ryzen™ Threadripper™ Pro Processors “Castle Peak” Ws
Ryzen 3945Wx Firmware
Ryzen 3955Wx Firmware
Ryzen 3960X Firmware
Ryzen 3970X Firmware
Ryzen 3975Wx Firmware
Ryzen 3990X Firmware
Ryzen 3995Wx Firmware