A malicious or compromised UApp or ABL can send a malformed system call to the bootloader, which may result in an out-of-bounds memory access that may potentially lead to an attacker leaking sensitive information or achieving code execution.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: AMD

Published: 2023-05-09T19:01:05.377Z

Updated: 2024-08-04T05:17:42.578Z

Reserved: 2022-03-31T16:50:27.869Z

Link: CVE-2021-46760

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2023-05-09T20:15:12.283

Modified: 2023-05-22T15:40:00.550

Link: CVE-2021-46760

cve-icon Redhat

No data.