CVE-2021-26392
CVE-2021-26392
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 0.3%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
09 Nov 2022Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Insufficient verification of missing size check in 'LoadModule' may lead to an out-of-bounds write potentially allowing an attacker with privileges to gain code execution of the OS/kernel by loading a malicious TA.
Affected products
AMD · AMD Radeon RX 5000 Series & PRO W5000 SeriesAMD · AMD Radeon RX 6000 Series & PRO W6000 SeriesAMD · AMD Ryzen™ Embedded 5000AMD · AMD Ryzen™ Embedded R1000AMD · AMD Ryzen™ Embedded R2000AMD · AMD Ryzen™ Embedded V1000AMD · AMD Ryzen™ Embedded V2000AMD · AMD Ryzen™Embedded V3000Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →