PT-2023-1429 · Amd · Amd System Management Unit

Published

2023-01-10

·

Updated

2023-08-08

·

CVE-2021-26355

CVSS v2.0

6.4

Medium

VectorAV:N/AC:L/Au:N/C:N/I:P/A:P
Name of the Vulnerable Software and Affected Versions AMD System Management Unit (SMU) (affected versions not specified)
Description The issue is related to insufficient fencing and checks in the System Management Unit (SMU) that may result in access to invalid message port registers, potentially leading to a denial-of-service. It is also described as a vulnerability in the SMU firmware of AMD processors, associated with incorrect resource release. Exploitation of this issue could allow a remote attacker to cause a denial-of-service.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Protection Mechanism Failure

Improper Resource Release

Weakness Enumeration

Related Identifiers

BDU:2023-00831
CVE-2021-26355

Affected Products

Amd System Management Unit