First published: Tue Jan 10 2023(Updated: )
Insufficient fencing and checks in System Management Unit (SMU) may result in access to invalid message port registers that could result in a potential denial-of-service.
Credit: psirt@amd.com
Affected Software | Affected Version | How to fix |
---|---|---|
Amd Epyc 7003 Firmware | <milanpi-sp3_1.0.0.7 | |
Amd Epyc 7003 | ||
Amd Epyc 72f3 Firmware | <milanpi-sp3_1.0.0.7 | |
Amd Epyc 72f3 | ||
Amd Epyc 7313 Firmware | <milanpi-sp3_1.0.0.7 | |
Amd Epyc 7313 | ||
Amd Epyc 7313p Firmware | <milanpi-sp3_1.0.0.7 | |
Amd Epyc 7313p | ||
Amd Epyc 7343 Firmware | <milanpi-sp3_1.0.0.7 | |
Amd Epyc 7343 | ||
Amd Epyc 7373x Firmware | <milanpi-sp3_1.0.0.7 | |
Amd Epyc 7373x | ||
Amd Epyc 73f3 Firmware | <milanpi-sp3_1.0.0.7 | |
Amd Epyc 73f3 | ||
Amd Epyc 7413 Firmware | <milanpi-sp3_1.0.0.7 | |
Amd Epyc 7413 | ||
Amd Epyc 7443 Firmware | <milanpi-sp3_1.0.0.7 | |
Amd Epyc 7443 | ||
Amd Epyc 7443p Firmware | <milanpi-sp3_1.0.0.7 | |
Amd Epyc 7443p | ||
Amd Epyc 7453 Firmware | <milanpi-sp3_1.0.0.7 | |
Amd Epyc 7453 | ||
Amd Epyc 74f3 Firmware | <milanpi-sp3_1.0.0.7 | |
Amd Epyc 74f3 | ||
Amd Epyc 7513 Firmware | <milanpi-sp3_1.0.0.7 | |
Amd Epyc 7513 | ||
Amd Epyc 7543 Firmware | <milanpi-sp3_1.0.0.7 | |
Amd Epyc 7543 | ||
Amd Epyc 7543p Firmware | <milanpi-sp3_1.0.0.7 | |
Amd Epyc 7543p | ||
Amd Epyc 7573x Firmware | <milanpi-sp3_1.0.0.7 | |
Amd Epyc 7573x | ||
Amd Epyc 75f3 Firmware | <milanpi-sp3_1.0.0.7 | |
Amd Epyc 75f3 | ||
Amd Epyc 7643 Firmware | <milanpi-sp3_1.0.0.7 | |
Amd Epyc 7643 | ||
Amd Epyc 7663 Firmware | <milanpi-sp3_1.0.0.7 | |
Amd Epyc 7663 | ||
Amd Epyc 7713 Firmware | <milanpi-sp3_1.0.0.7 | |
Amd Epyc 7713 | ||
Amd Epyc 7713p Firmware | <milanpi-sp3_1.0.0.7 | |
Amd Epyc 7713p | ||
Amd Epyc 7743 Firmware | <milanpi-sp3_1.0.0.7 | |
Amd Epyc 7743 | ||
Amd Epyc 7763 Firmware | <milanpi-sp3_1.0.0.7 | |
Amd Epyc 7763 | ||
Amd Epyc 7773x Firmware | <milanpi-sp3_1.0.0.7 | |
Amd Epyc 7773x |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2021-26355.
CVE-2021-26355 is a vulnerability that involves insufficient fencing and checks in the System Management Unit (SMU), which may result in access to invalid message port registers and potential denial-of-service.
The affected software versions for CVE-2021-26355 are Amd Epyc 7003 Firmware up to but excluding milanpi-sp3_1.0.0.7 and Amd Epyc 72f3 Firmware up to but excluding milanpi-sp3_1.0.0.7.
CVE-2021-26355 has a severity value of 5.5, which is classified as medium.
To fix CVE-2021-26355, it is recommended to apply the necessary updates or patches provided by AMD to the affected software versions.