ZeroHour

CVE-2021-26354

CVSS 3.1
5.5 medium
EPSS
<1%p7
Published
()
Modified
Description

Insufficient bounds checking in ASP may allow an attacker to issue a system call from a compromised ABL which may cause arbitrary memory values to be initialized to zero, potentially leading to a loss of integrity.

Vendors
amd
Products
epyc 7773x firmware, epyc 7763 firmware, epyc 7713p firmware, epyc 7713 firmware, epyc 7663 firmware, epyc 7643 firmware, epyc 75f3 firmware, epyc 7573x firmware, epyc 7543p firmware, epyc 7543 firmware, epyc 7513 firmware, epyc 74f3 firmware
Weakness
CWE-120
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.