Failure to validate the integer operand in ASP (AMD Secure Processor) bootloader may allow an attacker to introduce an integer overflow in the L2 directory table in SPI flash resulting in a potential denial of service.
History

Wed, 09 Apr 2025 16:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: AMD

Published:

Updated: 2025-04-09T15:14:19.086Z

Reserved: 2021-01-29T21:24:26.146Z

Link: CVE-2021-26346

cve-icon Vulnrichment

Updated: 2024-08-03T20:26:24.647Z

cve-icon NVD

Status : Modified

Published: 2023-01-11T08:15:10.570

Modified: 2025-04-09T16:15:18.247

Link: CVE-2021-26346

cve-icon Redhat

Severity : Moderate

Publid Date: 2023-01-10T06:30:00Z

Links: CVE-2021-26346 - Bugzilla