Vulnerability Database

289,599

Total vulnerabilities in the database

CVE-2021-26402

Insufficient bounds checking in ASP (AMD Secure Processor) firmware while handling BIOS mailbox commands, may allow an attacker to write partially-controlled data out-of-bounds to SMM or SEV-ES regions which may lead to a potential loss of integrity and availability.

  • Published: Jan 11, 2023
  • Updated: Nov 8, 2023
  • CVE: CVE-2021-26402
  • Severity: High
  • Exploit:

CVSS v3:

  • Severity: High
  • Score: 7.1
  • AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H

CWEs:

Software From Fixed in
amd / epyc_7h12_firmware - romepi_1.0.0.c
amd / epyc_7f72_firmware - romepi_1.0.0.c
amd / epyc_7f52_firmware - romepi_1.0.0.c
amd / epyc_7f32_firmware - romepi_1.0.0.c
amd / epyc_7742_firmware - romepi_1.0.0.c
amd / epyc_7702p_firmware - romepi_1.0.0.c
amd / epyc_7702_firmware - romepi_1.0.0.c
amd / epyc_7662_firmware - romepi_1.0.0.c
amd / epyc_7642_firmware - romepi_1.0.0.c
amd / epyc_7552_firmware - romepi_1.0.0.c
amd / epyc_7542_firmware - romepi_1.0.0.c
amd / epyc_7532_firmware - romepi_1.0.0.c
amd / epyc_7502p_firmware - romepi_1.0.0.c
amd / epyc_7502_firmware - romepi_1.0.0.c
amd / epyc_7452_firmware - romepi_1.0.0.c
amd / epyc_7402_firmware - romepi_1.0.0.c
amd / epyc_7402p_firmware - romepi_1.0.0.c
amd / epyc_7352_firmware - romepi_1.0.0.c
amd / epyc_7302p_firmware - romepi_1.0.0.c
amd / epyc_7302_firmware - romepi_1.0.0.c
amd / epyc_7282_firmware - romepi_1.0.0.c
amd / epyc_7272_firmware - romepi_1.0.0.c
amd / epyc_7262_firmware - romepi_1.0.0.c
amd / epyc_7252_firmware - romepi_1.0.0.c
amd / epyc_7232p_firmware - romepi_1.0.0.c
amd / epyc_7002_firmware - romepi_1.0.0.c
amd / epyc_7003_firmware - milanpi_1.0.0.4
amd / epyc_72f3_firmware - milanpi_1.0.0.4
amd / epyc_7313_firmware - milanpi_1.0.0.4
amd / epyc_7313p_firmware - milanpi_1.0.0.4
amd / epyc_7343_firmware - milanpi_1.0.0.4
amd / epyc_7373x_firmware - milanpi_1.0.0.4
amd / epyc_73f3_firmware - milanpi_1.0.0.4
amd / epyc_7413_firmware - milanpi_1.0.0.4
amd / epyc_7443_firmware - milanpi_1.0.0.4
amd / epyc_7443p_firmware - milanpi_1.0.0.4
amd / epyc_7453_firmware - milanpi_1.0.0.4
amd / epyc_74f3_firmware - milanpi_1.0.0.4
amd / epyc_7513_firmware - milanpi_1.0.0.4
amd / epyc_7543_firmware - milanpi_1.0.0.4
amd / epyc_7543p_firmware - milanpi_1.0.0.4
amd / epyc_7573x_firmware - milanpi_1.0.0.4
amd / epyc_75f3_firmware - milanpi_1.0.0.4
amd / epyc_7643_firmware - milanpi_1.0.0.4
amd / epyc_7663_firmware - milanpi_1.0.0.4
amd / epyc_7713_firmware - milanpi_1.0.0.4
amd / epyc_7713p_firmware - milanpi_1.0.0.4
amd / epyc_7743_firmware - milanpi_1.0.0.4
amd / epyc_7763_firmware - milanpi_1.0.0.4
amd / epyc_7773x_firmware - milanpi_1.0.0.4