First published: Tue May 09 2023(Updated: )
Insufficient address validation, may allow an attacker with a compromised ABL and UApp to corrupt sensitive memory locations potentially resulting in a loss of integrity or availability.
Credit: psirt@amd.com psirt@amd.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
AMD EPYC 72F3 Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 72F3 Firmware | ||
All of | ||
AMD EPYC 7313P Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 7313 Firmware | ||
All of | ||
AMD EPYC 7313P Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 7313P Firmware | ||
All of | ||
Amd Epyc Server Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 7343 Firmware | ||
All of | ||
AMD EPYC 7373X Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 7373X Firmware | ||
All of | ||
AMD EPYC 73F3 Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 73F3 Firmware | ||
All of | ||
AMD EPYC 7413 Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 7413 Firmware | ||
All of | ||
AMD EPYC 7443P Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 7443P | ||
All of | ||
AMD EPYC 7443P Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 7443P Firmware | ||
All of | ||
Amd Epyc Server Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 7453 | ||
All of | ||
AMD EPYC 7473X Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 7473X Firmware | ||
All of | ||
AMD EPYC 74F3 Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 74F3 Firmware | ||
All of | ||
AMD EPYC 7513 Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 7513 Firmware | ||
All of | ||
Amd Epyc Server Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 7543 Firmware | ||
All of | ||
AMD EPYC 7543P Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 7543P Firmware | ||
All of | ||
AMD EPYC 7573X Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 7573X Firmware | ||
All of | ||
AMD EPYC 75F3 Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 75F3 Firmware | ||
All of | ||
AMD EPYC 7643P Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 7643 Firmware | ||
All of | ||
AMD EPYC 7663 Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 7663 Firmware | ||
All of | ||
AMD EPYC 7713P Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 7713 Firmware | ||
All of | ||
AMD EPYC 7713P Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 7713P Firmware | ||
All of | ||
AMD EPYC 7763 Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 7763 Firmware | ||
All of | ||
AMD EPYC 7773X Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 7773X Firmware | ||
AMD EPYC 72F3 Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 72F3 Firmware | ||
AMD EPYC 7313P Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 7313 Firmware | ||
AMD EPYC 7313P Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 7313P Firmware | ||
Amd Epyc Server Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 7343 Firmware | ||
AMD EPYC 7373X Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 7373X Firmware | ||
AMD EPYC 73F3 Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 73F3 Firmware | ||
AMD EPYC 7413 Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 7413 Firmware | ||
AMD EPYC 7443P Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 7443P | ||
AMD EPYC 7443P Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 7443P Firmware | ||
Amd Epyc Server Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 7453 | ||
AMD EPYC 7473X Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 7473X Firmware | ||
AMD EPYC 74F3 Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 74F3 Firmware | ||
AMD EPYC 7513 Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 7513 Firmware | ||
Amd Epyc Server Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 7543 Firmware | ||
AMD EPYC 7543P Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 7543P Firmware | ||
AMD EPYC 7573X Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 7573X Firmware | ||
AMD EPYC 75F3 Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 75F3 Firmware | ||
AMD EPYC 7643P Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 7643 Firmware | ||
AMD EPYC 7663 Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 7663 Firmware | ||
AMD EPYC 7713P Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 7713 Firmware | ||
AMD EPYC 7713P Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 7713P Firmware | ||
AMD EPYC 7763 Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 7763 Firmware | ||
AMD EPYC 7773X Firmware | <milanpi_1.0.0.9 | |
AMD EPYC 7773X Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2021-26397 is high with a severity value of 7.1.
CVE-2021-26397 may allow an attacker with a compromised ABL and UApp to corrupt sensitive memory locations potentially resulting in a loss of integrity or availability for AMD Epyc 72f3 firmware.
CVE-2021-26397 may allow an attacker with a compromised ABL and UApp to corrupt sensitive memory locations potentially resulting in a loss of integrity or availability for AMD Epyc 7313 firmware.
There is currently no known fix for CVE-2021-26397. It is recommended to follow the mitigation recommendations provided by AMD in their security bulletin.
You can find more information about CVE-2021-26397 in AMD's security bulletin: [Link](https://www.amd.com/en/corporate/product-security/bulletin/AMD-SB-3001).