CVE-2021-26371

A compromised or malicious ABL or UApp could
send a SHA256 system call to the bootloader, which may result in exposure of
ASP memory to userspace, potentially leading to information disclosure.








ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
5.5 MEDIUM
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
AMDCNA
---
---
CVEADP
---
---
CISA-ADPADP
5.5 MEDIUM
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 19%
VendorProductVersion
amdryzen_5_2400g_firmware
-
amdryzen_5_2400ge_firmware
-
amdryzen_3_2200g_firmware
-
amdryzen_3_2200ge_firmware
-
amdryzen_3_pro_2100ge_firmware
-
amdryzen_9_3950x_firmware
-
amdryzen_9_3900xt_firmware
-
amdryzen_9_3900x_firmware
-
amdryzen_9_3900_firmware
-
amdryzen_7_3800xt_firmware
-
amdryzen_7_3800x_firmware
-
amdryzen_7_3700x_firmware
-
amdryzen_5_3600xt_firmware
-
amdryzen_5_3600x_firmware
-
amdryzen_5_3600_firmware
-
amdryzen_5_3500x_firmware
-
amdryzen_5_3500_firmware
-
amdryzen_3_3300x_firmware
-
amdryzen_3_3100_firmware
-
amdryzen_9_5950x_firmware
-
amdryzen_9_5900x_firmware
-
amdryzen_9_5900_firmware
-
amdryzen_7_5800x3d_firmware
-
amdryzen_7_5800x_firmware
-
amdryzen_7_5800_firmware
-
amdryzen_7_5700x_firmware
-
amdryzen_5_5600x_firmware
-
amdryzen_5_5600_firmware
-
amdryzen_5_5500_firmware
-
amdryzen_threadripper_pro_3945wx_firmware
-
amdryzen_threadripper_pro_3955wx_firmware
-
amdryzen_threadripper_pro_3975wx_firmware
-
amdryzen_threadripper_pro_3995wx_firmware
-
amdryzen_threadripper_3960x_firmware
-
amdryzen_threadripper_3970x_firmware
-
amdryzen_threadripper_3990x_firmware
-
amdryzen_threadripper_pro_5945wx_firmware
-
amdryzen_threadripper_pro_5955wx_firmware
-
amdryzen_threadripper_pro_5965wx_firmware
-
amdryzen_threadripper_pro_5975wx_firmware
-
amdryzen_threadripper_pro_5995wx_firmware
-
amdryzen_7_2800h_firmware
-
amdryzen_7_2700u_firmware
-
amdryzen_5_2600h_firmware
-
amdryzen_5_2500u_firmware
-
amdryzen_3_2300u_firmware
-
amdryzen_3_2200u_firmware
-
amdryzen_7_3780u_firmware
-
amdryzen_7_3750h_firmware
-
amdryzen_7_3700c_firmware
-
amdryzen_7_3700u_firmware
-
amdryzen_5_3580u_firmware
-
amdryzen_5_3550h_firmware
-
amdryzen_5_3500c_firmware
-
amdryzen_5_3500u_firmware
-
amdryzen_5_3450u_firmware
-
amdryzen_3_3350u_firmware
-
amdryzen_3_3300u_firmware
-
𝑥
= Vulnerable software versions