CVE-2021-46757: Buffer Overflow
Insufficient checking of memory buffer in ASP Secure OS may allow an attacker with a malicious TA to read/write to the ASP Secure OS kernel virtual address space potentially leading to privilege escalation.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-46757?
CVE-2021-46757 has a medium severity rating due to potential privilege escalation risks.
How do I fix CVE-2021-46757?
To fix CVE-2021-46757, update the firmware of the affected AMD Ryzen Embedded products to the latest version that addresses the vulnerability.
What systems are affected by CVE-2021-46757?
CVE-2021-46757 affects several AMD Ryzen Embedded firmware versions, including those for 5950E, 5900E, 5800E, and other Ryzen Embedded models.
What could an attacker achieve by exploiting CVE-2021-46757?
An attacker exploiting CVE-2021-46757 could read or write to the ASP Secure OS kernel virtual address space, potentially allowing privilege escalation.
Is there a patch available for CVE-2021-46757?
Yes, AMD has released a patch for CVE-2021-46757 in the latest firmware updates for affected products.