CVE-2021-26364
Severity CVSS v4.0:
Pending analysis
Type:
CWE-119
Buffer Errors
Publication date:
11/05/2022
Last modified:
25/05/2022
Description
Insufficient bounds checking in an SMU mailbox register could allow an attacker to potentially read outside of the SRAM address range which could result in an exception handling leading to a potential denial of service.
Impact
Base Score 3.x
5.50
Severity 3.x
MEDIUM
Base Score 2.0
4.90
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:amd:epyc_7232p_firmware:*:*:*:*:*:*:*:* | romepi-sp3_1.0.0.d (excluding) | |
| cpe:2.3:h:amd:epyc_7232p:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:amd:epyc_7302p_firmware:*:*:*:*:*:*:*:* | romepi-sp3_1.0.0.d (excluding) | |
| cpe:2.3:h:amd:epyc_7302p:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:amd:epyc_7402p_firmware:*:*:*:*:*:*:*:* | romepi-sp3_1.0.0.d (excluding) | |
| cpe:2.3:h:amd:epyc_7402p:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:amd:epyc_7502p_firmware:*:*:*:*:*:*:*:* | romepi-sp3_1.0.0.d (excluding) | |
| cpe:2.3:h:amd:epyc_7502p:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:amd:epyc_7702p_firmware:*:*:*:*:*:*:*:* | romepi-sp3_1.0.0.d (excluding) | |
| cpe:2.3:h:amd:epyc_7702p:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:amd:epyc_7252_firmware:*:*:*:*:*:*:*:* | romepi-sp3_1.0.0.d (excluding) | |
| cpe:2.3:h:amd:epyc_7252:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:amd:epyc_7262_firmware:*:*:*:*:*:*:*:* | romepi-sp3_1.0.0.d (excluding) | |
| cpe:2.3:h:amd:epyc_7262:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:amd:epyc_7272_firmware:*:*:*:*:*:*:*:* | romepi-sp3_1.0.0.d (excluding) |
To consult the complete list of CPE names with products and versions, see this page



