Show filters
95 Total Results
Displaying 51-60 of 95
Sort by:
Attacker Value
Unknown
CVE-2021-26316
Disclosure Date: January 11, 2023 (last updated October 08, 2023)
Failure to validate the communication buffer and communication service in the BIOS may allow an attacker to tamper with the buffer resulting in potential SMM (System Management Mode) arbitrary code execution.
0
Attacker Value
Unknown
CVE-2021-46778
Disclosure Date: August 09, 2022 (last updated October 08, 2023)
Execution unit scheduler contention may lead to a side channel vulnerability found on AMD CPU microarchitectures codenamed “Zen 1”, “Zen 2” and “Zen 3” that use simultaneous multithreading (SMT). By measuring the contention level on scheduler queues an attacker may potentially leak sensitive information.
0
Attacker Value
Unknown
CVE-2021-46744
Disclosure Date: May 10, 2022 (last updated October 07, 2023)
An attacker with access to a malicious hypervisor may be able to infer data values used in a SEV guest on AMD CPUs by monitoring ciphertext values over time.
0
Attacker Value
Unknown
CVE-2021-26376
Disclosure Date: May 10, 2022 (last updated October 07, 2023)
Insufficient checks in System Management Unit (SMU) FeatureConfig may result in reenabling features potentially resulting in denial of resources and/or denial of service.
0
Attacker Value
Unknown
CVE-2021-26364
Disclosure Date: May 10, 2022 (last updated October 07, 2023)
Insufficient bounds checking in an SMU mailbox register could allow an attacker to potentially read outside of the SRAM address range which could result in an exception handling leading to a potential denial of service.
0
Attacker Value
Unknown
CVE-2021-26375
Disclosure Date: May 10, 2022 (last updated October 07, 2023)
Insufficient General Purpose IO (GPIO) bounds check in System Management Unit (SMU) may result in access/updates from/to invalid address space that could result in denial of service.
0
Attacker Value
Unknown
CVE-2021-26349
Disclosure Date: May 10, 2022 (last updated October 07, 2023)
Failure to assign a new report ID to an imported guest may potentially result in an SEV-SNP guest VM being tricked into trusting a dishonest Migration Agent (MA).
0
Attacker Value
Unknown
CVE-2021-26378
Disclosure Date: May 10, 2022 (last updated October 07, 2023)
Insufficient bound checks in the System Management Unit (SMU) may result in access to an invalid address space that could result in denial of service.
0
Attacker Value
Unknown
CVE-2021-26342
Disclosure Date: May 10, 2022 (last updated October 07, 2023)
In SEV guest VMs, the CPU may fail to flush the Translation Lookaside Buffer (TLB) following a particular sequence of operations that includes creation of a new virtual machine control block (VMCB). The failure to flush the TLB may cause the microcode to use stale TLB translations which may allow for disclosure of SEV guest memory contents. Users of SEV-ES/SEV-SNP guest VMs are not impacted by this vulnerability.
0
Attacker Value
Unknown
CVE-2021-26347
Disclosure Date: May 10, 2022 (last updated October 07, 2023)
Failure to validate the integer operand in ASP (AMD Secure Processor) bootloader may allow an attacker to introduce an integer overflow in the L2 directory table in SPI flash resulting in a potential denial of service.
0