CVE-2021-46750
3.0
Vector
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:L/I:L/A:N
Exploitability: 0.5 / Impact: 2.5
Source: psirt@amd.com (Secondary)
Description
Failure to validate the address and size in TEE (Trusted Execution Environment) may allow a malicious x86 attacker to send malformed messages to the graphics mailbox resulting in an overlap of a TMR (Trusted Memory Region) that was previously allocated by the ASP bootloader leading to a potential loss of integrity.
References (3)
Source: psirt@amd.com
Source: psirt@amd.com
Source: psirt@amd.com
Timeline
No history available yet.