ZeroHour

CVE-2021-26317

CVSS 3.1
7.8 high
EPSS
<1%p19
Published
()
Modified
Description

Failure to verify the protocol in SMM may allow an attacker to control the protocol and modify SPI flash resulting in a potential arbitrary code execution.

Vendors
amd
Products
radeon software, ryzen 3 2200u firmware, ryzen 5300g firmware, ryzen 5300ge firmware, ryzen 5600g firmware, ryzen 5600ge firmware, ryzen 5600x firmware, ryzen 5700g firmware, ryzen 5700ge firmware, athlon 3050ge firmware, athlon 3150g firmware, athlon 3150ge firmware
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.