Show filters
4 Total Results
Displaying 1-4 of 4
Sort by:
Attacker Value
Unknown
CVE-2021-46756
Disclosure Date: May 09, 2023 (last updated October 08, 2023)
Insufficient validation of inputs in
SVC_MAP_USER_STACK in the ASP (AMD Secure Processor) bootloader may allow an
attacker with a malicious Uapp or ABL to send malformed or invalid syscall to
the bootloader resulting in a potential denial of service and loss of
integrity.
0
Attacker Value
Unknown
CVE-2023-20520
Disclosure Date: May 09, 2023 (last updated October 08, 2023)
Improper access control settings in ASP
Bootloader may allow an attacker to corrupt the return address causing a
stack-based buffer overrun potentially leading to arbitrary code execution.
0
Attacker Value
Unknown
CVE-2021-26406
Disclosure Date: May 09, 2023 (last updated October 08, 2023)
Insufficient validation in parsing Owner's
Certificate Authority (OCA) certificates in SEV (AMD Secure Encrypted Virtualization)
and SEV-ES user application can lead to a host crash potentially resulting in
denial of service.
0
Attacker Value
Unknown
CVE-2021-46779
Disclosure Date: January 11, 2023 (last updated February 24, 2025)
Insufficient input validation in SVC_ECC_PRIMITIVE system call in a compromised user application or ABL may allow an attacker to corrupt ASP (AMD Secure Processor) OS memory which may lead to potential loss of integrity and availability.
0