CVE-2021-26384
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD
Description
A malformed SMI (System Management Interface) command may allow an attacker to establish a corrupted SMI Trigger Info data structure, potentially leading to out-of-bounds memory reads and writes when triggering an SMI resulting in a potential loss of resources.
Affected (52)
Products: Amd: Ryzen 7 5700g Firmware, Ryzen 7 5700ge Firmware, Ryzen 5 5600g Firmware, Ryzen 5 5600ge Firmware, Ryzen 3 5300g Firmware, Ryzen 3 5300ge Firmware, Ryzen 9 5980hx Firmware, Ryzen 9 5980hs Firmware, Ryzen 7 5825u Firmware, Ryzen 9 5900hx Firmware, Ryzen 9 5900hs Firmware, Ryzen 7 5825c Firmware, Ryzen 7 5800h Firmware, Ryzen 5 5625u Firmware, Ryzen 7 5800hs Firmware, Ryzen 5 5625c Firmware, Ryzen 5 5600h Firmware, Ryzen 5 5600hs Firmware, Ryzen 7 5800u Firmware, Ryzen 5 5600u Firmware, Ryzen 5 5560u Firmware, Ryzen 3 5425u Firmware, Ryzen 3 5425c Firmware, Ryzen 3 5400u Firmware, Ryzen 3 5125c Firmware, Athlon Silver 3050u Firmware, Athlon Gold 3150u Firmware, Ryzen 3 3200u Firmware, Ryzen 3 3250u Firmware, Ryzen 3 3300u Firmware, Ryzen 3 3350u Firmware, Ryzen 3 3450u Firmware, Ryzen 3 3500u Firmware, Ryzen 3 3500c Firmware, Ryzen 3 3550h Firmware, Ryzen 3 3580u Firmware, Ryzen 3 3700u Firmware, Ryzen 3 3700c Firmware, Ryzen 3 3750h Firmware, Ryzen 3 3780u Firmware, Ryzen 3 2200u Firmware, Ryzen 3 2300u Firmware, Ryzen 5 2500u Firmware, Ryzen 5 2600 Firmware, Ryzen 5 2600h Firmware, Ryzen 5 2600x Firmware, Ryzen 5 2700 Firmware, Ryzen 5 2700x Firmware, Ryzen 7 2700 Firmware, Ryzen 7 2700u Firmware, Ryzen 7 2700x Firmware, Ryzen 7 2800h Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before comboam4_v2_pi_1.2.0.6c |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 7 5700g | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Before comboam4_v2_pi_1.2.0.6c |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 7 5700ge | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Before comboam4_v2_pi_1.2.0.6c |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 5 5600g | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Before comboam4_v2_pi_1.2.0.6c |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 5 5600ge | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Before comboam4_v2_pi_1.2.0.6c |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 3 5300g | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Before comboam4_v2_pi_1.2.0.6c |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 3 5300ge | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Before cezannepi-fp6_1.0.0.9 |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 9 5980hx | All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Before cezannepi-fp6_1.0.0.9 |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 9 5980hs | All versions |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| Before cezannepi-fp6_1.0.0.9 |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 7 5825u | All versions |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| Before cezannepi-fp6_1.0.0.9 |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 9 5900hx | All versions |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| Before cezannepi-fp6_1.0.0.9 |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 9 5900hs | All versions |
Configuration L
| Vulnerable Software | Affected Versions |
|---|---|
| Before cezannepi-fp6_1.0.0.9 |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 7 5825c | All versions |
Configuration M
| Vulnerable Software | Affected Versions |
|---|---|
| Before cezannepi-fp6_1.0.0.9 |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 7 5800h | All versions |
Configuration N
| Vulnerable Software | Affected Versions |
|---|---|
| Before cezannepi-fp6_1.0.0.9 |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 5 5625u | All versions |
Configuration O
| Vulnerable Software | Affected Versions |
|---|---|
| Before cezannepi-fp6_1.0.0.9 |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 7 5800hs | All versions |
Configuration P
| Vulnerable Software | Affected Versions |
|---|---|
| Before cezannepi-fp6_1.0.0.9 |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 5 5625c | All versions |
Configuration Q
| Vulnerable Software | Affected Versions |
|---|---|
| Before cezannepi-fp6_1.0.0.9 |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 5 5600h | All versions |
Configuration R
| Vulnerable Software | Affected Versions |
|---|---|
| Before cezannepi-fp6_1.0.0.9 |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 5 5600hs | All versions |
Configuration S
| Vulnerable Software | Affected Versions |
|---|---|
| Before cezannepi-fp6_1.0.0.9 |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 7 5800u | All versions |
Configuration T
| Vulnerable Software | Affected Versions |
|---|---|
| Before cezannepi-fp6_1.0.0.9 |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 5 5600u | All versions |
Configuration U
| Vulnerable Software | Affected Versions |
|---|---|
| Before cezannepi-fp6_1.0.0.9 |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 5 5560u | All versions |
Configuration V
| Vulnerable Software | Affected Versions |
|---|---|
| Before cezannepi-fp6_1.0.0.9 |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 3 5425u | All versions |
Configuration W
| Vulnerable Software | Affected Versions |
|---|---|
| Before cezannepi-fp6_1.0.0.9 |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 3 5425c | All versions |
Configuration X
| Vulnerable Software | Affected Versions |
|---|---|
| Before cezannepi-fp6_1.0.0.9 |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 3 5400u | All versions |
Configuration Y
| Vulnerable Software | Affected Versions |
|---|---|
| Before cezannepi-fp6_1.0.0.9 |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 3 5125c | All versions |
Configuration Z
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Amd Athlon Silver 3050u | All versions |
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Amd Athlon Gold 3150u | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 3 3200u | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 3 3250u | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 3 3300u | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 3 3350u | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 3 3450u | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 3 3500u | All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 3 3500c | All versions |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 3 3550h | All versions |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 3 3580u | All versions |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 3 3700u | All versions |
Configuration L
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 3 3700c | All versions |
Configuration M
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 3 3750h | All versions |
Configuration N
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 3 3780u | All versions |
Configuration O
| Vulnerable Software | Affected Versions |
|---|---|
| Before comboam4v2_pi_1.2.0.6c |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 3 2200u | All versions |
Configuration P
| Vulnerable Software | Affected Versions |
|---|---|
| Before comboam4v2_pi_1.2.0.6c |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 3 2300u | All versions |
Configuration Q
| Vulnerable Software | Affected Versions |
|---|---|
| Before comboam4v2_pi_1.2.0.6c |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 5 2500u | All versions |
Configuration R
| Vulnerable Software | Affected Versions |
|---|---|
| Before comboam4v2_pi_1.2.0.6c |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 5 2600 | All versions |
Configuration S
| Vulnerable Software | Affected Versions |
|---|---|
| Before comboam4v2_pi_1.2.0.6c |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 5 2600h | All versions |
Configuration T
| Vulnerable Software | Affected Versions |
|---|---|
| Before comboam4v2_pi_1.2.0.6c |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 5 2600x | All versions |
Configuration U
| Vulnerable Software | Affected Versions |
|---|---|
| Before comboam4v2_pi_1.2.0.6c |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 5 2700 | All versions |
Configuration V
| Vulnerable Software | Affected Versions |
|---|---|
| Before comboam4v2_pi_1.2.0.6c |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 5 2700x | All versions |
Configuration W
| Vulnerable Software | Affected Versions |
|---|---|
| Before comboam4v2_pi_1.2.0.6c |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 7 2700 | All versions |
Configuration X
| Vulnerable Software | Affected Versions |
|---|---|
| Before comboam4v2_pi_1.2.0.6c |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 7 2700u | All versions |
Configuration Y
| Vulnerable Software | Affected Versions |
|---|---|
| Before comboam4v2_pi_1.2.0.6c |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 7 2700x | All versions |
Configuration Z
| Vulnerable Software | Affected Versions |
|---|---|
| Before comboam4v2_pi_1.2.0.6c |
| Running on/with | Platform Versions |
|---|---|
Amd Ryzen 7 2800h | All versions |
Related CWEs
References (2)
Source: psirt@amd.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.