CVE-2021-26345: Medium severity amd epyc 7h12 firmware vulnerability
Failure to validate the value in APCB may allow a privileged attacker to tamper with the APCB token to force an out-of-bounds memory read potentially resulting in a denial of service.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-26345?
The severity of CVE-2021-26345 is considered high due to its potential to enable denial of service through out-of-bounds memory reads.
How do I fix CVE-2021-26345?
To remediate CVE-2021-26345, update to the latest firmware versions provided by AMD for affected EPYC processors.
What types of systems are affected by CVE-2021-26345?
CVE-2021-26345 affects specific firmware versions of AMD EPYC processors, particularly those with versions below romepi_1.0.0.f.
Can CVE-2021-26345 be exploited remotely?
Yes, CVE-2021-26345 can potentially be exploited by a privileged attacker with access to the system.
What are the potential consequences of CVE-2021-26345 exploitation?
Exploitation of CVE-2021-26345 could lead to system instability, resulting in a denial of service condition.