Show filters
95 Total Results
Displaying 71-80 of 95
Sort by:
Attacker Value
Unknown

CVE-2021-46771

Disclosure Date: May 06, 2022 (last updated February 23, 2025)
Insufficient validation of addresses in AMD Secure Processor (ASP) firmware system call may potentially lead to arbitrary code execution by a compromised user application.
Attacker Value
Unknown

CVE-2021-26340

Disclosure Date: December 06, 2021 (last updated October 07, 2023)
A malicious hypervisor in conjunction with an unprivileged attacker process inside an SEV/SEV-ES guest VM may fail to flush the Translation Lookaside Buffer (TLB) resulting in unexpected behavior inside the virtual machine (VM).
Attacker Value
Unknown

CVE-2020-12988

Disclosure Date: November 09, 2021 (last updated October 07, 2023)
A potential denial of service (DoS) vulnerability exists in the integrated chipset that may allow a malicious attacker to hang the system when it is rebooted.
Attacker Value
Unknown

CVE-2021-26326

Disclosure Date: November 09, 2021 (last updated February 23, 2025)
Failure to validate VM_HSAVE_PA during SNP_INIT may result in a loss of memory integrity.
Attacker Value
Unknown

CVE-2021-26335

Disclosure Date: November 09, 2021 (last updated October 07, 2023)
Improper input and range checking in the AMD Secure Processor (ASP) boot loader image header may allow an attacker to use attacker-controlled values prior to signature validation potentially resulting in arbitrary code execution.
Attacker Value
Unknown

CVE-2021-26320

Disclosure Date: November 09, 2021 (last updated February 23, 2025)
Insufficient validation of the AMD SEV Signing Key (ASK) in the SEND_START command in the SEV Firmware may allow a local authenticated attacker to perform a denial of service of the PSP
Attacker Value
Unknown

CVE-2020-12946

Disclosure Date: November 09, 2021 (last updated February 23, 2025)
Insufficient input validation in ASP firmware for discrete TPM commands could allow a potential loss of integrity and denial of service.
Attacker Value
Unknown

CVE-2021-26331

Disclosure Date: November 09, 2021 (last updated February 23, 2025)
AMD System Management Unit (SMU) contains a potential issue where a malicious user may be able to manipulate mailbox entries leading to arbitrary code execution.
Attacker Value
Unknown

CVE-2021-26321

Disclosure Date: November 09, 2021 (last updated February 23, 2025)
Insufficient ID command validation in the SEV Firmware may allow a local authenticated attacker to perform a denial of service of the PSP.
Attacker Value
Unknown

CVE-2021-26323

Disclosure Date: November 09, 2021 (last updated February 23, 2025)
Failure to validate SEV Commands while SNP is active may result in a potential impact to memory integrity.