Description
When the AMD Platform Security Processor (PSP) boot rom loads, authenticates, and subsequently decrypts an encrypted FW, due to insufficient verification of the integrity of decrypted image, arbitrary code may be executed in the PSP when encrypted firmware images are used.
Published: 2021-11-16
Score: 7.8 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2021-13121 When the AMD Platform Security Processor (PSP) boot rom loads, authenticates, and subsequently decrypts an encrypted FW, due to insufficient verification of the integrity of decrypted image, arbitrary code may be executed in the PSP when encrypted firmware images are used.
History

No history.

Subscriptions

Amd Epyc 7003 Epyc 7003 Firmware Epyc 72f3 Epyc 72f3 Firmware Epyc 7313 Epyc 7313 Firmware Epyc 7313p Epyc 7313p Firmware Epyc 7343 Epyc 7343 Firmware Epyc 73f3 Epyc 73f3 Firmware Epyc 7413 Epyc 7413 Firmware Epyc 7443 Epyc 7443 Firmware Epyc 7443p Epyc 7443p Firmware Epyc 7453 Epyc 7453 Firmware Epyc 74f3 Epyc 74f3 Firmware Epyc 7513 Epyc 7513 Firmware Epyc 7543 Epyc 7543 Firmware Epyc 7543p Epyc 7543p Firmware Epyc 75f3 Epyc 75f3 Firmware Epyc 7643 Epyc 7643 Firmware Epyc 7663 Epyc 7663 Firmware Epyc 7713 Epyc 7713 Firmware Epyc 7713p Epyc 7713p Firmware Epyc 7763 Epyc 7763 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: AMD

Published:

Updated: 2024-09-17T01:21:40.952Z

Reserved: 2021-01-29T00:00:00.000Z

Link: CVE-2021-26315

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-11-16T19:15:07.703

Modified: 2024-11-21T05:56:04.683

Link: CVE-2021-26315

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses