Vulnerability Database

289,599

Total vulnerabilities in the database

CVE-2021-26408

Insufficient validation of elliptic curve points in SEV-legacy firmware may compromise SEV-legacy guest migration potentially resulting in loss of guest's integrity or confidentiality.

  • Published: May 10, 2022
  • Updated: Apr 14, 2023
  • CVE: CVE-2021-26408
  • Severity: High
  • Exploit:

CVSS v3:

  • Severity: High
  • Score: 7.1
  • AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N

CVSS v2:

  • Severity: Medium
  • Score: 6.6
  • AV:L/AC:L/Au:N/C:C/I:C/A:N

No CWE or OWASP classifications available.

Software From Fixed in
amd / epyc_7002_firmware - romepi-sp3_1.0.0.c
amd / epyc_7001_firmware - naplespi-sp3_1.0.0.g
amd / epyc_7232p_firmware - romepi-sp3_1.0.0.c
amd / epyc_7252_firmware - romepi-sp3_1.0.0.c
amd / epyc_7262_firmware - romepi-sp3_1.0.0.c
amd / epyc_7272_firmware - romepi-sp3_1.0.0.c
amd / epyc_7282_firmware - romepi-sp3_1.0.0.c
amd / epyc_7302_firmware - romepi-sp3_1.0.0.c
amd / epyc_7302p_firmware - romepi-sp3_1.0.0.c
amd / epyc_7352_firmware - romepi-sp3_1.0.0.c
amd / epyc_7402_firmware - romepi-sp3_1.0.0.c
amd / epyc_7402p_firmware - romepi-sp3_1.0.0.c
amd / epyc_7452_firmware - romepi-sp3_1.0.0.c
amd / epyc_7502_firmware - romepi-sp3_1.0.0.c
amd / epyc_7502p_firmware - romepi-sp3_1.0.0.c
amd / epyc_7532_firmware - romepi-sp3_1.0.0.c
amd / epyc_7542_firmware - romepi-sp3_1.0.0.c
amd / epyc_7552_firmware - romepi-sp3_1.0.0.c
amd / epyc_7642_firmware - romepi-sp3_1.0.0.c
amd / epyc_7662_firmware - romepi-sp3_1.0.0.c
amd / epyc_7702_firmware - romepi-sp3_1.0.0.c
amd / epyc_7702p_firmware - romepi-sp3_1.0.0.c
amd / epyc_7742_firmware - romepi-sp3_1.0.0.c
amd / epyc_7f32_firmware - romepi-sp3_1.0.0.c
amd / epyc_7f52_firmware - romepi-sp3_1.0.0.c
amd / epyc_7f72_firmware - romepi-sp3_1.0.0.c
amd / epyc_7251_firmware - naplespi-sp3_1.0.0.g
amd / epyc_7281_firmware - naplespi-sp3_1.0.0.g
amd / epyc_7301_firmware - naplespi-sp3_1.0.0.g
amd / epyc_7351_firmware - naplespi-sp3_1.0.0.g
amd / epyc_7351p_firmware - naplespi-sp3_1.0.0.g
amd / epyc_7401_firmware - naplespi-sp3_1.0.0.g
amd / epyc_7401p_firmware - naplespi-sp3_1.0.0.g
amd / epyc_7451_firmware - naplespi-sp3_1.0.0.g
amd / epyc_7501_firmware - naplespi-sp3_1.0.0.g
amd / epyc_7551_firmware - naplespi-sp3_1.0.0.g
amd / epyc_7551p_firmware - naplespi-sp3_1.0.0.g
amd / epyc_7601_firmware - naplespi-sp3_1.0.0.g