CVE-2021-26353

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
10/05/2022
Last modified:
24/02/2026

Description

Failure to validate inputs in SMM may allow an attacker to create a mishandled error leaving the DRTM UApp in a partially initialized state potentially resulting in loss of memory integrity.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:amd:epyc_7763_firmware:*:*:*:*:*:*:*:* milanpi-sp3_1.0.0.4 (excluding)
cpe:2.3:h:amd:epyc_7763:-:*:*:*:*:*:*:*
cpe:2.3:o:amd:epyc_7713p_firmware:*:*:*:*:*:*:*:* milanpi-sp3_1.0.0.4 (excluding)
cpe:2.3:h:amd:epyc_7713p:-:*:*:*:*:*:*:*
cpe:2.3:o:amd:epyc_7713_firmware:*:*:*:*:*:*:*:* milanpi-sp3_1.0.0.4 (excluding)
cpe:2.3:h:amd:epyc_7713:-:*:*:*:*:*:*:*
cpe:2.3:o:amd:epyc_7663_firmware:*:*:*:*:*:*:*:* milanpi-sp3_1.0.0.4 (excluding)
cpe:2.3:h:amd:epyc_7663:-:*:*:*:*:*:*:*
cpe:2.3:o:amd:epyc_7643_firmware:*:*:*:*:*:*:*:* milanpi-sp3_1.0.0.4 (excluding)
cpe:2.3:h:amd:epyc_7643:-:*:*:*:*:*:*:*
cpe:2.3:o:amd:epyc_75f3_firmware:*:*:*:*:*:*:*:* milanpi-sp3_1.0.0.4 (excluding)
cpe:2.3:h:amd:epyc_75f3:-:*:*:*:*:*:*:*
cpe:2.3:o:amd:epyc_7543p_firmware:*:*:*:*:*:*:*:* milanpi-sp3_1.0.0.4 (excluding)
cpe:2.3:h:amd:epyc_7543p:-:*:*:*:*:*:*:*
cpe:2.3:o:amd:epyc_7543_firmware:*:*:*:*:*:*:*:* milanpi-sp3_1.0.0.4 (excluding)