CVE-2021-26364

Severity CVSS v4.0:
Pending analysis
Type:
CWE-119 Buffer Errors
Publication date:
11/05/2022
Last modified:
25/05/2022

Description

Insufficient bounds checking in an SMU mailbox register could allow an attacker to potentially read outside of the SRAM address range which could result in an exception handling leading to a potential denial of service.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:amd:epyc_7232p_firmware:*:*:*:*:*:*:*:* romepi-sp3_1.0.0.d (excluding)
cpe:2.3:h:amd:epyc_7232p:-:*:*:*:*:*:*:*
cpe:2.3:o:amd:epyc_7302p_firmware:*:*:*:*:*:*:*:* romepi-sp3_1.0.0.d (excluding)
cpe:2.3:h:amd:epyc_7302p:-:*:*:*:*:*:*:*
cpe:2.3:o:amd:epyc_7402p_firmware:*:*:*:*:*:*:*:* romepi-sp3_1.0.0.d (excluding)
cpe:2.3:h:amd:epyc_7402p:-:*:*:*:*:*:*:*
cpe:2.3:o:amd:epyc_7502p_firmware:*:*:*:*:*:*:*:* romepi-sp3_1.0.0.d (excluding)
cpe:2.3:h:amd:epyc_7502p:-:*:*:*:*:*:*:*
cpe:2.3:o:amd:epyc_7702p_firmware:*:*:*:*:*:*:*:* romepi-sp3_1.0.0.d (excluding)
cpe:2.3:h:amd:epyc_7702p:-:*:*:*:*:*:*:*
cpe:2.3:o:amd:epyc_7252_firmware:*:*:*:*:*:*:*:* romepi-sp3_1.0.0.d (excluding)
cpe:2.3:h:amd:epyc_7252:-:*:*:*:*:*:*:*
cpe:2.3:o:amd:epyc_7262_firmware:*:*:*:*:*:*:*:* romepi-sp3_1.0.0.d (excluding)
cpe:2.3:h:amd:epyc_7262:-:*:*:*:*:*:*:*
cpe:2.3:o:amd:epyc_7272_firmware:*:*:*:*:*:*:*:* romepi-sp3_1.0.0.d (excluding)