PT-2023-12574 · Amd · 3Rd Gen Amd Ryzen™ Threadripper™ Processors “Castle Peak” Hedt+8

Publicado

2023-05-09

·

Atualizado

2023-05-22

·

CVE-2021-46760

CVSS v3.1

9.8

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions No specific software or versions are mentioned in the provided descriptions.
Description A malicious or compromised UApp or ABL can send a malformed system call to the bootloader, which may result in an out-of-bounds memory access. This could potentially lead to an attacker leaking sensitive information or achieving code execution.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Allocation of Resources Without Limits

Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2021-46760

Produtos afetados

3Rd Gen Amd Ryzen™ Threadripper™ Processors “Castle Peak” Hedt
Ryzen™ Threadripper™ Pro Processors “Castle Peak” Ws
Ryzen 3945Wx Firmware
Ryzen 3955Wx Firmware
Ryzen 3960X Firmware
Ryzen 3970X Firmware
Ryzen 3975Wx Firmware
Ryzen 3990X Firmware
Ryzen 3995Wx Firmware