PT-2022-9750 · Unknown · Audio Co-Processor

Published

2022-07-14

·

Updated

2022-07-29

·

CVE-2021-26382

CVSS v3.1

4.4

Medium

VectorAV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Audio Co-Processor (ACP) (affected versions not specified)
Description The issue allows an attacker with root account privileges to load any legitimately signed firmware image into the ACP, regardless of the signing key being declared as usable for authenticating an ACP firmware image. This could potentially result in a denial of service.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2021-26382

Affected Products

Audio Co-Processor