ZeroHour

CVE-2021-46766

CVSS 3.1
5.5 medium
EPSS
<1%p14
Published
()
Modified
Description

Improper clearing of sensitive data in the ASP Bootloader may expose secret keys to a privileged attacker accessing ASP SRAM, potentially leading to a loss of confidentiality.

Vendors
amd
Products
epyc 9654p firmware, epyc 9654 firmware, epyc 9634 firmware, epyc 9554p firmware, epyc 9554 firmware, epyc 9534 firmware, epyc 9474f firmware, epyc 9454p firmware, epyc 9454 firmware, epyc 9374f firmware, epyc 9354p firmware, epyc 9354 firmware
Weakness
CWE-459
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.