Show filters
55 Total Results
Displaying 51-55 of 55
Sort by:
Attacker Value
Unknown

CVE-2021-26370

Disclosure Date: May 06, 2022 (last updated October 07, 2023)
Improper validation of destination address in SVC_LOAD_FW_IMAGE_BY_INSTANCE and SVC_LOAD_BINARY_BY_ATTRIB in a malicious UApp or ABL may allow an attacker to overwrite arbitrary bootloader memory with SPI ROM contents resulting in a loss of integrity and availability.
Attacker Value
Unknown

CVE-2021-26353

Disclosure Date: May 06, 2022 (last updated November 08, 2023)
Failure to validate inputs in SMM may allow an attacker to create a mishandled error leaving the DRTM UApp in a partially initialized state potentially resulting in loss of memory integrity.
Attacker Value
Unknown

CVE-2021-26332

Disclosure Date: May 06, 2022 (last updated October 07, 2023)
Failure to verify SEV-ES TMR is not in MMIO space, SEV-ES FW could result in a potential loss of integrity or availability.
Attacker Value
Unknown

CVE-2021-26324

Disclosure Date: May 06, 2022 (last updated October 07, 2023)
A bug with the SEV-ES TMR may lead to a potential loss of memory integrity for SNP-active VMs.
Attacker Value
Unknown

CVE-2021-46771

Disclosure Date: May 06, 2022 (last updated October 07, 2023)
Insufficient validation of addresses in AMD Secure Processor (ASP) firmware system call may potentially lead to arbitrary code execution by a compromised user application.