Lucene search

K
cvelistAMDCVELIST:CVE-2021-46795
HistoryJan 10, 2023 - 8:53 p.m.

CVE-2021-46795

2023-01-1020:53:25
AMD
www.cve.org
5
toctou
tee os
denial of service

AI Score

5

Confidence

High

EPSS

0

Percentile

12.7%

A TOCTOU (time-of-check to time-of-use) vulnerability exists where an attacker may use a compromised BIOS to cause the TEE OS to read memory out of bounds that could potentially result in a denial of service.

CNA Affected

[
  {
    "defaultStatus": "affected",
    "packageName": "AGESA",
    "platforms": [
      "x86"
    ],
    "product": "Ryzen 5000 Series",
    "vendor": " AMD",
    "versions": [
      {
        "status": "affected",
        "version": "various "
      }
    ]
  },
  {
    "defaultStatus": "unaffected",
    "packageName": "AGESA",
    "platforms": [
      "x86"
    ],
    "product": "Ryzen 3000 Series ",
    "vendor": " AMD",
    "versions": [
      {
        "status": "affected",
        "version": "various "
      }
    ]
  }
]

AI Score

5

Confidence

High

EPSS

0

Percentile

12.7%

Related for CVELIST:CVE-2021-46795