CVE-2021-46795

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
11/01/2023
Last modified:
09/04/2025

Description

A TOCTOU (time-of-check to time-of-use) vulnerability exists where an attacker may use a compromised BIOS to cause the TEE OS to read memory out of bounds that could potentially result in a denial of service.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:amd:comboam4v2_pi_firmware:*:*:*:*:*:*:*:* 1.2.0.5 (excluding)
cpe:2.3:h:amd:comboam4v2_pi:-:*:*:*:*:*:*:*
cpe:2.3:o:amd:renoirpi-fp6_firmware:*:*:*:*:*:*:*:* 1.0.0.7 (excluding)
cpe:2.3:h:amd:comboam4v2_pi:-:*:*:*:*:*:*:*
cpe:2.3:o:amd:cezannepi-fp6_firmware:*:*:*:*:*:*:*:* 1.0.0.6 (excluding)
cpe:2.3:h:amd:cezannepi-fp6:-:*:*:*:*:*:*:*