Failure to validate the integer operand in ASP (AMD Secure Processor) bootloader may allow an attacker to introduce an integer overflow in the L2 directory table in SPI flash resulting in a potential denial of service.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: AMD

Published: 2023-01-10T19:50:24.146Z

Updated: 2024-08-03T20:26:24.647Z

Reserved: 2021-01-29T21:24:26.146Z

Link: CVE-2021-26346

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2023-01-11T08:15:10.570

Modified: 2024-11-21T05:56:10.023

Link: CVE-2021-26346

cve-icon Redhat

Severity : Moderate

Publid Date: 2023-01-10T06:30:00Z

Links: CVE-2021-26346 - Bugzilla