PT-2021-8202 · Amd+1 · Amd Secure Processor+2

Shawn Hoffman

·

Published

2021-11-16

·

Updated

2024-12-09

·

CVE-2021-26335

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions AMD Platform Security Processor (affected versions not specified)
Description The issue is related to improper input and range checking in the AMD Secure Processor (ASP) boot loader image header. This may allow an attacker to use attacker-controlled values prior to signature validation, potentially resulting in arbitrary code execution.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Race Condition

Weakness Enumeration

Related Identifiers

BDU:2024-11257
CVE-2021-26335

Affected Products

Amd Platform Security Processor
Amd Secure Processor
Red Os