Show filters
88 Total Results
Displaying 71-80 of 88
Sort by:
Attacker Value
Unknown

CVE-2021-26331

Disclosure Date: November 09, 2021 (last updated February 23, 2025)
AMD System Management Unit (SMU) contains a potential issue where a malicious user may be able to manipulate mailbox entries leading to arbitrary code execution.
Attacker Value
Unknown

CVE-2021-26321

Disclosure Date: November 09, 2021 (last updated February 23, 2025)
Insufficient ID command validation in the SEV Firmware may allow a local authenticated attacker to perform a denial of service of the PSP.
Attacker Value
Unknown

CVE-2021-26323

Disclosure Date: November 09, 2021 (last updated February 23, 2025)
Failure to validate SEV Commands while SNP is active may result in a potential impact to memory integrity.
Attacker Value
Unknown

CVE-2021-26336

Disclosure Date: November 09, 2021 (last updated February 23, 2025)
Insufficient bounds checking in System Management Unit (SMU) may cause invalid memory accesses/updates that could result in SMU hang and subsequent failure to service any further requests from other components.
Attacker Value
Unknown

CVE-2020-12961

Disclosure Date: November 09, 2021 (last updated February 23, 2025)
A potential vulnerability exists in AMD Platform Security Processor (PSP) that may allow an attacker to zero any privileged register on the System Management Network which may lead to bypassing SPI ROM protections.
Attacker Value
Unknown

CVE-2021-26337

Disclosure Date: November 09, 2021 (last updated October 07, 2023)
Insufficient DRAM address validation in System Management Unit (SMU) may result in a DMA read from invalid DRAM address to SRAM resulting in SMU not servicing further requests.
Attacker Value
Unknown

CVE-2020-12944

Disclosure Date: November 09, 2021 (last updated February 23, 2025)
Insufficient validation of BIOS image length by ASP Firmware could lead to arbitrary code execution.
Attacker Value
Unknown

CVE-2021-26329

Disclosure Date: November 09, 2021 (last updated February 23, 2025)
AMD System Management Unit (SMU) may experience an integer overflow when an invalid length is provided which may result in a potential loss of resources.
Attacker Value
Unknown

CVE-2020-12951

Disclosure Date: November 09, 2021 (last updated February 23, 2025)
Race condition in ASP firmware could allow less privileged x86 code to perform ASP SMM (System Management Mode) operations.
Attacker Value
Unknown

CVE-2020-12954

Disclosure Date: November 09, 2021 (last updated February 23, 2025)
A side effect of an integrated chipset option may be able to be used by an attacker to bypass SPI ROM protections, allowing unauthorized SPI ROM modification.