CVE-2021-46766

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
14/11/2023
Last modified:
18/06/2024

Description

Improper clearing of sensitive data in the ASP Bootloader may expose secret keys to a privileged attacker accessing ASP SRAM, potentially leading to a loss of confidentiality.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:amd:epyc_9654p_firmware:*:*:*:*:*:*:*:* genoapi_1.0.0.4 (excluding)
cpe:2.3:h:amd:epyc_9654p:-:*:*:*:*:*:*:*
cpe:2.3:o:amd:epyc_9654_firmware:*:*:*:*:*:*:*:* genoapi_1.0.0.4 (excluding)
cpe:2.3:h:amd:epyc_9654:-:*:*:*:*:*:*:*
cpe:2.3:o:amd:epyc_9634_firmware:*:*:*:*:*:*:*:* genoapi_1.0.0.4 (excluding)
cpe:2.3:h:amd:epyc_9634:-:*:*:*:*:*:*:*
cpe:2.3:o:amd:epyc_9554p_firmware:*:*:*:*:*:*:*:* genoapi_1.0.0.4 (excluding)
cpe:2.3:h:amd:epyc_9554p:-:*:*:*:*:*:*:*
cpe:2.3:o:amd:epyc_9554_firmware:*:*:*:*:*:*:*:* genoapi_1.0.0.4 (excluding)
cpe:2.3:h:amd:epyc_9554:-:*:*:*:*:*:*:*
cpe:2.3:o:amd:epyc_9534_firmware:*:*:*:*:*:*:*:* genoapi_1.0.0.4 (excluding)
cpe:2.3:h:amd:epyc_9534:-:*:*:*:*:*:*:*
cpe:2.3:o:amd:epyc_9474f_firmware:*:*:*:*:*:*:*:* genoapi_1.0.0.4 (excluding)
cpe:2.3:h:amd:epyc_9474f:-:*:*:*:*:*:*:*
cpe:2.3:o:amd:epyc_9454p_firmware:*:*:*:*:*:*:*:* genoapi_1.0.0.4 (excluding)