CVE-2021-46748

Insufficient bounds checking in the ASP (AMD Secure Processor) may allow an attacker to access memory outside the bounds of what is permissible to a TA (Trusted Application) resulting in a potential denial of service.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
5.5 MEDIUM
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
AMDCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 29%
VendorProductVersion
intelradeon_rx_vega_m_firmware
𝑥
< 23.10.01.46
amdradeon_software
𝑥
< 23.7.1
amdradeon_software
𝑥
< 23.q3
amdradeon_rx_vega_56_firmware
-
amdradeon_rx_vega_64_firmware
-
amdradeon_pro_vega_56_firmware
-
amdradeon_pro_vega_64_firmware
-
amdradeon_software
𝑥
< 23.7.1
amdradeon_software
𝑥
< 23.q3
𝑥
= Vulnerable software versions