Attacker Value
Unknown
(0 users assessed)
Exploitability
Unknown
(0 users assessed)
User Interaction
Unknown
Privileges Required
Unknown
Attack Vector
Unknown
0

CVE-2021-46772

Disclosure Date: August 13, 2024
Add MITRE ATT&CK tactics and techniques that apply to this CVE.

Description

Insufficient input validation in the ABL may allow a privileged
attacker with access to the BIOS menu or UEFI shell to tamper with the
structure headers in SPI ROM causing an out of bounds memory read and write,
potentially resulting in memory corruption or denial of service.

Add Assessment

No one has assessed this topic. Be the first to add your voice to the community.

CVSS V3 Severity and Metrics
Base Score:
None
Impact Score:
Unknown
Exploitability Score:
Unknown
Vector:
Unknown
Attack Vector (AV):
Unknown
Attack Complexity (AC):
Unknown
Privileges Required (PR):
Unknown
User Interaction (UI):
Unknown
Scope (S):
Unknown
Confidentiality (C):
Unknown
Integrity (I):
Unknown
Availability (A):
Unknown

General Information

Vendors

  • AMD

Products

  • AMD EPYC™ 7002 Series Processors,
  • AMD EPYC™ 7003 Series Processors,
  • AMD Ryzen™ 3000 Series Desktop Processors,
  • AMD Ryzen™ 5000 Series Desktop Processors,
  • AMD Ryzen™ 5000 Series Desktop Processor with Radeon™ Graphics,
  • AMD Athlon™ 3000 Series Desktop Processors with Radeon™ Graphics,
  • AMD Ryzen™ 4000 Series Desktop Processors with Radeon™ Graphics,
  • AMD Ryzen™ Threadripper™ 3000 Series Processors,
  • AMD Ryzen™ Threadripper™ PRO 3000WX Series Processors,
  • AMD Ryzen™ Threadripper™ PRO 5000WX Processors,
  • AMD Athlon™ 3000 Series Mobile Processors with Radeon™ Graphics,
  • AMD Ryzen™ 3000 Series Mobile Processor with Radeon™ Graphics,
  • AMD Ryzen™ 4000 Series Mobile Processors with Radeon™ Graphics,
  • AMD Ryzen™ 5000 Series Mobile Processors with Radeon™ Graphics,
  • AMD Ryzen™ 7020 Series Processors with Radeon™ Graphics,
  • AMD Ryzen™ 6000 Series Processors with Radeon™ Graphics,
  • AMD Ryzen™ 7035 Series Processors with Radeon™ Graphics,
  • AMD Ryzen™ 5000 Series Processors with Radeon™ Graphics,
  • AMD Ryzen™ 3000 Series Processors with Radeon™ Graphics,
  • AMD EPYC™ Embedded 7002 Series Processors,
  • AMD EPYC™ Embedded 7003 Series Processors,
  • AMD Ryzen™ Embedded R1000 Series Processors,
  • AMD Ryzen™ Embedded R2000 Series Processors,
  • AMD Ryzen™ Embedded 5000 Series Processors,
  • AMD Ryzen™ Embedded V1000 Series Processors,
  • AMD Ryzen™ Embedded V2000 Series Processors,
  • AMD Ryzen™ Embedded V3000 Series Processors

Additional Info

Technical Analysis