ZeroHour

CVE-2021-46779

CVSS 3.1
7.1 high
EPSS
<1%p7
Published
()
Modified
Description

Insufficient input validation in SVC_ECC_PRIMITIVE system call in a compromised user application or ABL may allow an attacker to corrupt ASP (AMD Secure Processor) OS memory which may lead to potential loss of integrity and availability.

Vendors
amd
Products
romepi firmware, milanpi firmware, naplespi firmware
Weakness
CWE-787
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H

In the news

No ingested article mentions this CVE yet.