PT-2023-1408 · Amd · Amd Secure Processor

Published

2023-01-10

·

Updated

2023-01-18

·

CVE-2021-26396

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions AMD Secure Processor (affected versions not specified)
Description The issue is related to insufficient validation of address mapping to IO in the AMD Secure Processor, which may result in a loss of memory integrity in the SNP guest. This could potentially allow a remote attacker to impact the integrity of protected information.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Insufficient Verification of Data Authenticity

RCE

Weakness Enumeration

Related Identifiers

BDU:2023-00789
CVE-2021-26396

Affected Products

Amd Secure Processor