CVE-2021-46754
Published: May 9, 2023
Modified: Aug 4, 2024
Description
Insufficient input validation in the ASP (AMD Secure Processor) bootloader may allow an attacker with a compromised Uapp or ABL to coerce the bootloader into exposing sensitive information to the SMU (System Management Unit) resulting in a potential loss of confidentiality and integrity.
| Vendor | Product | Versions |
|---|---|---|
AMD | Ryzen™ 2000 series Desktop Processors “Raven Ridge” AM4 | affected various |
AMD | Ryzen™ 5000 Series Desktop processor with Radeon™ Graphics “Cezanne” AM4 | affected various |
AMD | Athlon™ 3000 Series Mobile Processors with Radeon™ Graphics “Dali”/”Dali” ULP | affected various |
AMD | Athlon™ 3000 Series Mobile Processors with Radeon™ Graphics “Pollock” | affected various |
AMD | Ryzen™ 2000 Series Mobile Processors “Raven Ridge” FP5 | affected various |
AMD | Ryzen™ 3000 Series Mobile processor, 2nd Gen AMD Ryzen™ Mobile Processors with Radeon™ Graphics “Picasso” | affected various |
AMD | Ryzen™ 3000 Series Mobile Processors with Radeon™ Graphics “Renoir” | affected various |
AMD | Ryzen™ 5000 Series Mobile Processors with Radeon™ Graphics “Lucienne” | affected various |
AMD | Ryzen™ 5000 Series Mobile processors with Radeon™ Graphics “Cezanne” | affected various |
AMD | AMD Ryzen™ Embedded R1000 | affected various |
AMD | AMD Ryzen™ Embedded R2000 | affected various |
AMD | AMD Ryzen™ Embedded V1000 | affected various |
AMD | AMD Ryzen™ Embedded V2000 | affected various |
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now