Improper key usage control in AMD Secure Processor
(ASP) may allow an attacker with local access who has gained arbitrary code
execution privilege in ASP to
extract ASP cryptographic keys, potentially resulting in loss of
confidentiality and integrity.
Metrics
Affected Vendors & Products
References
History
Thu, 15 Aug 2024 18:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Amd
Amd athlon Amd epyc Amd ryzen |
|
Weaknesses | CWE-639 | |
CPEs | cpe:2.3:h:amd:athlon:-:*:*:*:*:*:*:* cpe:2.3:h:amd:epyc:-:*:*:*:*:*:*:* cpe:2.3:h:amd:ryzen:-:*:*:*:*:*:*:* |
|
Vendors & Products |
Amd
Amd athlon Amd epyc Amd ryzen |
|
Metrics |
ssvc
|
Tue, 13 Aug 2024 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Improper key usage control in AMD Secure Processor (ASP) may allow an attacker with local access who has gained arbitrary code execution privilege in ASP to extract ASP cryptographic keys, potentially resulting in loss of confidentiality and integrity. | |
References |
| |
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: AMD
Published: 2024-08-13T16:54:58.122Z
Updated: 2024-08-15T18:09:24.358Z
Reserved: 2024-01-03T16:43:30.197Z
Link: CVE-2024-21981
Vulnrichment
Updated: 2024-08-14T20:36:30.773Z
NVD
Status : Awaiting Analysis
Published: 2024-08-13T17:15:22.920
Modified: 2024-08-15T18:35:06.310
Link: CVE-2024-21981
Redhat
No data.