CVE-2021-26371

EUVD-2021-13177
A compromised or malicious ABL or UApp could
send a SHA256 system call to the bootloader, which may result in exposure of
ASP memory to userspace, potentially leading to information disclosure.








ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
5.5 MEDIUM
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
CISA-ADPADP
5.5 MEDIUM
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 20%
Affected Products (NVD)
VendorProductVersion
amdryzen_5_2400g_firmware
-
amdryzen_5_2400ge_firmware
-
amdryzen_3_2200g_firmware
-
amdryzen_3_2200ge_firmware
-
amdryzen_3_pro_2100ge_firmware
-
amdryzen_9_3950x_firmware
-
amdryzen_9_3900xt_firmware
-
amdryzen_9_3900x_firmware
-
amdryzen_9_3900_firmware
-
amdryzen_7_3800xt_firmware
-
amdryzen_7_3800x_firmware
-
amdryzen_7_3700x_firmware
-
amdryzen_5_3600xt_firmware
-
amdryzen_5_3600x_firmware
-
amdryzen_5_3600_firmware
-
amdryzen_5_3500x_firmware
-
amdryzen_5_3500_firmware
-
amdryzen_3_3300x_firmware
-
amdryzen_3_3100_firmware
-
amdryzen_9_5950x_firmware
-
amdryzen_9_5900x_firmware
-
amdryzen_9_5900_firmware
-
amdryzen_7_5800x3d_firmware
-
amdryzen_7_5800x_firmware
-
amdryzen_7_5800_firmware
-
amdryzen_7_5700x_firmware
-
amdryzen_5_5600x_firmware
-
amdryzen_5_5600_firmware
-
amdryzen_5_5500_firmware
-
amdryzen_threadripper_pro_3945wx_firmware
-
amdryzen_threadripper_pro_3955wx_firmware
-
amdryzen_threadripper_pro_3975wx_firmware
-
amdryzen_threadripper_pro_3995wx_firmware
-
amdryzen_threadripper_3960x_firmware
-
amdryzen_threadripper_3970x_firmware
-
amdryzen_threadripper_3990x_firmware
-
amdryzen_threadripper_pro_5945wx_firmware
-
amdryzen_threadripper_pro_5955wx_firmware
-
amdryzen_threadripper_pro_5965wx_firmware
-
amdryzen_threadripper_pro_5975wx_firmware
-
amdryzen_threadripper_pro_5995wx_firmware
-
amdryzen_7_2800h_firmware
-
amdryzen_7_2700u_firmware
-
amdryzen_5_2600h_firmware
-
amdryzen_5_2500u_firmware
-
amdryzen_3_2300u_firmware
-
amdryzen_3_2200u_firmware
-
amdryzen_7_3780u_firmware
-
amdryzen_7_3750h_firmware
-
amdryzen_7_3700c_firmware
-
amdryzen_7_3700u_firmware
-
amdryzen_5_3580u_firmware
-
amdryzen_5_3550h_firmware
-
amdryzen_5_3500c_firmware
-
amdryzen_5_3500u_firmware
-
amdryzen_5_3450u_firmware
-
amdryzen_3_3350u_firmware
-
amdryzen_3_3300u_firmware
-
𝑥
= Vulnerable software versions