CVE-2021-46779
 
Severity Score
7.1
*CVSS v3.1
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
Insufficient input validation in SVC_ECC_PRIMITIVE system call in a compromised user application or ABL may allow an attacker to corrupt ASP (AMD Secure Processor) OS memory which may lead to potential loss of integrity and availability.
Una validación de entrada insuficiente en la llamada al sistema SVC_ECC_PRIMITIVE en una aplicación de usuario comprometida o ABL puede permitir que un atacante corrompa la memoria del sistema operativo ASP (AMD Secure Processor), lo que puede provocar una posible pérdida de integridad y disponibilidad.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2022-03-31 CVE Reserved
- 2023-01-10 CVE Published
- 2024-08-02 EPSS Updated
- 2024-08-04 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-787: Out-of-bounds Write
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://www.amd.com/en/corporate/product-security/bulletin/AMD-SB-1032 | 2023-11-07 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Amd Search vendor "Amd" | Romepi Firmware Search vendor "Amd" for product "Romepi Firmware" | < 1.0.0.c Search vendor "Amd" for product "Romepi Firmware" and version " < 1.0.0.c" | - |
Affected
| in | Amd Search vendor "Amd" | Romepi Search vendor "Amd" for product "Romepi" | - | - |
Safe
|
Amd Search vendor "Amd" | Milanpi Firmware Search vendor "Amd" for product "Milanpi Firmware" | < 1.0.0.4 Search vendor "Amd" for product "Milanpi Firmware" and version " < 1.0.0.4" | - |
Affected
| in | Amd Search vendor "Amd" | Milanpi Search vendor "Amd" for product "Milanpi" | - | - |
Safe
|
Amd Search vendor "Amd" | Naplespi Firmware Search vendor "Amd" for product "Naplespi Firmware" | < 1.0.0.g Search vendor "Amd" for product "Naplespi Firmware" and version " < 1.0.0.g" | - |
Affected
| in | Amd Search vendor "Amd" | Naplespi Search vendor "Amd" for product "Naplespi" | - | - |
Safe
|