CVE-2021-26393
CVE-2021-26393
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 0.2%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
09 Nov 2022Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Insufficient memory cleanup in the AMD Secure Processor (ASP) Trusted Execution Environment (TEE) may allow an authenticated attacker with privileges to generate a valid signed TA and potentially poison the contents of the process memory with attacker controlled data resulting in a loss of confidentiality.
Affected products
AMD · AMD Radeon RX 5000 Series & PRO W5000 SeriesAMD · AMD Radeon RX 6000 Series & PRO W6000 SeriesAMD · AMD Ryzen™ Embedded R1000AMD · AMD Ryzen™ Embedded R2000AMD · AMD Ryzen™ Embedded V1000AMD · AMD Ryzen™ Embedded V2000Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →