Advisory Published
Updated

CVE-2021-46758

First published: Tue Nov 14 2023(Updated: )

Insufficient validation of SPI flash addresses in the ASP (AMD Secure Processor) bootloader may allow an attacker to read data in memory mapped beyond SPI flash resulting in a potential loss of availability and integrity.

Credit: psirt@amd.com

Affected SoftwareAffected VersionHow to fix
All of
AMD Ryzen 7 5700G Firmware<comboam4v2_pi_1.2.0.8
AMD Ryzen 7 5700G Firmware
All of
AMD Ryzen 7 5700GE Firmware<comboam4v2_pi_1.2.0.8
AMD Ryzen 7 5700GE Firmware
All of
AMD Ryzen 5 5600G Firmware<comboam4v2_pi_1.2.0.8
AMD Ryzen 5 5600GT Firmware
All of
AMD Ryzen 5 5600GE Firmware<comboam4v2_pi_1.2.0.8
AMD Ryzen 5 5600GE Firmware
All of
AMD Ryzen 3 5300G Firmware<comboam4v2_pi_1.2.0.8
AMD Ryzen 3 5300G Firmware
All of
AMD Ryzen 3 5300GE Firmware<comboam4v2_pi_1.2.0.8
AMD Ryzen 3 5300GE Firmware
All of
AMD Ryzen 9 7950X3D Firmware<comboam5_1.0.0.1
AMD Ryzen 9 7950X3D
All of
AMD Ryzen 9 7900X3D firmware<comboam5_1.0.0.1
AMD Ryzen 9 7900X3D firmware
All of
AMD Ryzen 7 7800X3D Firmware<comboam5_1.0.0.1
AMD Ryzen 7 7800X3D
All of
AMD Ryzen 9 4900H Firmware<renoirpi-fp6_1.0.0.a
AMD Ryzen 9 4900H Firmware
All of
amd ryzen 9 4900hs firmware<renoirpi-fp6_1.0.0.a
amd ryzen 9 4900hs
All of
AMD Ryzen 7 4800H Firmware<renoirpi-fp6_1.0.0.a
AMD Ryzen 7 4800H
All of
amd ryzen 7 4800hs firmware<renoirpi-fp6_1.0.0.a
amd ryzen 7 4800hs
All of
amd ryzen 7 4980u firmware<renoirpi-fp6_1.0.0.a
amd ryzen 7 4980u
All of
AMD Ryzen 7 4800U Firmware<renoirpi-fp6_1.0.0.a
AMD Ryzen 7 4800U Firmware
All of
AMD Ryzen 7 4700U Firmware<renoirpi-fp6_1.0.0.a
AMD Ryzen 7 4700U
All of
AMD Ryzen 5 4600H Firmware<renoirpi-fp6_1.0.0.a
AMD Ryzen 5 4600H Firmware
All of
amd ryzen 5 4600hs firmware<renoirpi-fp6_1.0.0.a
amd ryzen 5 4600hs
All of
amd ryzen 5 4680u firmware<renoirpi-fp6_1.0.0.a
amd ryzen 5 4680u
All of
AMD Ryzen 5 4600U Firmware<renoirpi-fp6_1.0.0.a
AMD Ryzen 5 4600U Firmware
All of
AMD Ryzen 5 4500U Firmware<renoirpi-fp6_1.0.0.a
AMD Ryzen 5 4500U
All of
AMD Ryzen 3 4300U Firmware<renoirpi-fp6_1.0.0.a
AMD Ryzen 3 4300U
All of
AMD Ryzen 7 5700U Firmware<cezannepi-fp6_1.0.0.c
AMD Ryzen 7 5700U Firmware
All of
AMD Ryzen 5 5500U Firmware<cezannepi-fp6_1.0.0.c
AMD Ryzen 5 5500U
All of
AMD Ryzen 3 5300U Firmware<cezannepi-fp6_1.0.0.c
AMD Ryzen 3 5300U Firmware
All of
AMD Ryzen 9 5980HX<cezannepi-fp6_1.0.0.c
AMD Ryzen 9 5980HX Firmware
All of
AMD Ryzen 9 5980HS Firmware<cezannepi-fp6_1.0.0.c
AMD Ryzen 9 5980HS Firmware
All of
AMD Ryzen 9 5900HX Firmware<cezannepi-fp6_1.0.0.c
AMD Ryzen 9 5900HX
All of
AMD Ryzen 9 5900HS Firmware<cezannepi-fp6_1.0.0.c
AMD Ryzen 9 5900HS Firmware
All of
AMD Ryzen 7 5800H Firmware<cezannepi-fp6_1.0.0.c
AMD Ryzen 7 5800H Firmware
All of
AMD Ryzen 7 5800HS Firmware<cezannepi-fp6_1.0.0.c
AMD Ryzen 7 5800HS Firmware
All of
AMD Ryzen 7 5825U Firmware<cezannepi-fp6_1.0.0.c
AMD Ryzen 7 5825U Firmware
All of
AMD Ryzen 7 5800U Firmware<cezannepi-fp6_1.0.0.c
AMD Ryzen 7 5800U Firmware
All of
AMD Ryzen 5 5600H Firmware<cezannepi-fp6_1.0.0.c
AMD Ryzen 5 5600H
All of
AMD Ryzen 5 5600HS Firmware<cezannepi-fp6_1.0.0.c
AMD Ryzen 5 5600HS
All of
AMD Ryzen 5 5625U Firmware<cezannepi-fp6_1.0.0.c
AMD Ryzen 5 5625U Firmware
All of
AMD Ryzen 5 5600U Firmware<cezannepi-fp6_1.0.0.c
AMD Ryzen 5 5600U
All of
AMD Ryzen 5 5560U Firmware<cezannepi-fp6_1.0.0.c
AMD Ryzen 5 5560U Firmware
All of
amd ryzen 5 5500h firmware<cezannepi-fp6_1.0.0.c
AMD Ryzen 5 5500H
All of
AMD Ryzen 3 5425U<cezannepi-fp6_1.0.0.c
AMD Ryzen 3 5425U
All of
AMD Ryzen 3 5400U Firmware<cezannepi-fp6_1.0.0.c
AMD Ryzen 3 5400U
All of
AMD Ryzen 3 5125C Firmware<cezannepi-fp6_1.0.0.c
AMD Ryzen 3 5125C
All of
AMD Ryzen 9 6980HX firmware<rembrandtpi-fp7_1.0.0.5
AMD Ryzen 9 6980HX firmware
All of
AMD Ryzen 9 6980HS Firmware<rembrandtpi-fp7_1.0.0.5
AMD Ryzen 9 6980HS Firmware
All of
AMD Ryzen 9 6900HX Firmware<rembrandtpi-fp7_1.0.0.5
AMD Ryzen 9 6900HX Firmware
All of
AMD Ryzen 9 6900HS Firmware<rembrandtpi-fp7_1.0.0.5
AMD Ryzen 9 6900HS Firmware
All of
AMD Ryzen 7 6800H Firmware<rembrandtpi-fp7_1.0.0.5
AMD Ryzen 7 6800H Firmware
All of
AMD Ryzen 7 6800HS firmware<rembrandtpi-fp7_1.0.0.5
AMD Ryzen 7 6800HS firmware
All of
AMD Ryzen 7 6800U Firmware<rembrandtpi-fp7_1.0.0.5
AMD Ryzen 7 6800U Firmware
All of
AMD Ryzen 5 6600H firmware<rembrandtpi-fp7_1.0.0.5
AMD Ryzen 5 6600H firmware
All of
AMD Ryzen 5 6600HS Firmware<rembrandtpi-fp7_1.0.0.5
AMD Ryzen 5 6600HS Firmware
All of
AMD Ryzen 5 6600U Firmware<rembrandtpi-fp7_1.0.0.5
AMD Ryzen 5 6600U Firmware
All of
AMD Ryzen 7 7735HS Firmware<rembrandtpi-fp7_1.0.0.5
AMD Ryzen 7 7735HS Firmware
All of
AMD Ryzen 7 7736U Firmware<rembrandtpi-fp7_1.0.0.5
AMD Ryzen 7 7736U
All of
AMD Ryzen 7 7735U Firmware<rembrandtpi-fp7_1.0.0.5
AMD Ryzen 7 7735U Firmware
All of
AMD Ryzen 5 7535HS Firmware<rembrandtpi-fp7_1.0.0.5
AMD Ryzen 5 7535HS Firmware
All of
AMD Ryzen 5 7535U firmware<rembrandtpi-fp7_1.0.0.5
AMD Ryzen 5 7535U firmware
All of
AMD Ryzen 3 7335U Firmware<rembrandtpi-fp7_1.0.0.5
AMD Ryzen 3 7335U Firmware
All of
AMD Ryzen 7 PRO 7730U Firmware<cezannepi-fp6_1.0.0.c
AMD Ryzen 7 PRO 7730U Firmware
All of
AMD Ryzen 5 Pro 7530U<cezannepi-fp6_1.0.0.c
AMD Ryzen 5 Pro 7530U
All of
AMD Ryzen 3 Pro 7330U Firmware<cezannepi-fp6_1.0.0.c
AMD Ryzen 3 Pro 7330U Firmware

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Frequently Asked Questions

  • What is the severity of CVE-2021-46758?

    CVE-2021-46758 has a severity rating that indicates a potential impact on the integrity and availability of system data.

  • How do I fix CVE-2021-46758?

    To fix CVE-2021-46758, firmware updates should be applied to the affected AMD Ryzen processors.

  • What systems are affected by CVE-2021-46758?

    CVE-2021-46758 affects specific AMD firmware versions for Ryzen 3, Ryzen 5, Ryzen 7, and Ryzen 9 series processors.

  • Can CVE-2021-46758 be exploited remotely?

    CVE-2021-46758 may allow attackers to read sensitive data, but exploiting it typically requires local access.

  • What are the potential consequences of CVE-2021-46758?

    Exploitation of CVE-2021-46758 can lead to unauthorized access to memory data, affecting system availability and data integrity.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203