CVE-2021-46774: High severity amd epyc server firmware vulnerability
Insufficient DRAM address validation in System Management Unit (SMU) may allow an attacker to read/write from/to an invalid DRAM address, potentially resulting in denial-of-service.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-46774?
The severity of CVE-2021-46774 is classified as high, as it may allow an attacker to read or write to invalid DRAM addresses.
How do I fix CVE-2021-46774?
To fix CVE-2021-46774, update the firmware to the latest version provided by AMD for affected EPYC processors.
Which systems are affected by CVE-2021-46774?
CVE-2021-46774 affects several AMD EPYC processor firmware versions, specifically those prior to specified updates.
What are the potential impacts of CVE-2021-46774?
The potential impacts of CVE-2021-46774 include denial-of-service conditions when invalid memory addresses are accessed.
Is there a workaround for CVE-2021-46774?
There are no known workarounds for CVE-2021-46774; applying the firmware update is the recommended approach.