A TOCTOU in ASP bootloader may allow an attacker to tamper with the SPI ROM following data read to memory potentially resulting in S3 data corruption and information disclosure.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: AMD

Published: 2023-05-09T18:58:48.108Z

Updated: 2024-08-03T20:26:24.804Z

Reserved: 2021-01-29T21:24:26.149Z

Link: CVE-2021-26356

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2023-05-09T19:15:10.737

Modified: 2024-11-21T05:56:12.070

Link: CVE-2021-26356

cve-icon Redhat

No data.