CVE-2021-26316
published 2023-01-11CVE-2021-26316: Failure to validate the communication buffer and communication service in the BIOS may allow an attacker to tamper with the buffer resulting in potential SMM…
PriorityP340high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.26%
17.0th percentile
Failure to validate the communication buffer and communication service in the BIOS may allow an attacker to tamper with the buffer resulting in potential SMM (System Management Mode) arbitrary code execution.
Affected
56 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| amd | 1st_gen_epyc | — | — |
| amd | 2nd_gen_epyc | — | — |
| amd | 3rd_gen_epyc | — | — |
| amd | epyc_7002_firmware | < romepi_1.0.0.d | romepi_1.0.0.d |
| amd | epyc_7003_firmware | < milanpi-sp3_1.0.0.8 | milanpi-sp3_1.0.0.8 |
| amd | epyc_7232p_firmware | < romepi_1.0.0.d | romepi_1.0.0.d |
| amd | epyc_7252_firmware | < romepi_1.0.0.d | romepi_1.0.0.d |
| amd | epyc_7262_firmware | < romepi_1.0.0.d | romepi_1.0.0.d |
| amd | epyc_7272_firmware | < romepi_1.0.0.d | romepi_1.0.0.d |
| amd | epyc_7282_firmware | < romepi_1.0.0.d | romepi_1.0.0.d |
| amd | epyc_72f3_firmware | < milanpi-sp3_1.0.0.8 | milanpi-sp3_1.0.0.8 |
| amd | epyc_7302_firmware | < romepi_1.0.0.d | romepi_1.0.0.d |
| amd | epyc_7302p_firmware | < romepi_1.0.0.d | romepi_1.0.0.d |
| amd | epyc_7313_firmware | < milanpi-sp3_1.0.0.8 | milanpi-sp3_1.0.0.8 |
| amd | epyc_7313p_firmware | < milanpi-sp3_1.0.0.8 | milanpi-sp3_1.0.0.8 |
| amd | epyc_7343_firmware | < milanpi-sp3_1.0.0.8 | milanpi-sp3_1.0.0.8 |
| amd | epyc_7352_firmware | < romepi_1.0.0.d | romepi_1.0.0.d |
| amd | epyc_7373x_firmware | < milanpi-sp3_1.0.0.8 | milanpi-sp3_1.0.0.8 |
| amd | epyc_73f3_firmware | < milanpi-sp3_1.0.0.8 | milanpi-sp3_1.0.0.8 |
| amd | epyc_7402_firmware | < romepi_1.0.0.d | romepi_1.0.0.d |
| amd | epyc_7402p_firmware | < romepi_1.0.0.d | romepi_1.0.0.d |
| amd | epyc_7413_firmware | < milanpi-sp3_1.0.0.8 | milanpi-sp3_1.0.0.8 |
| amd | epyc_7443_firmware | < milanpi-sp3_1.0.0.8 | milanpi-sp3_1.0.0.8 |
| amd | epyc_7443p_firmware | < milanpi-sp3_1.0.0.8 | milanpi-sp3_1.0.0.8 |
| amd | epyc_7452_firmware | < romepi_1.0.0.d | romepi_1.0.0.d |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-hr2h-gpm8-8hqc: Failure to validate the communication buffer and communication service in the BIOS may allow an attacker to tamper with the buffer resulting in potent
ghsa_unreviewed·2023-01-11
CVE-2021-26316 [HIGH] CWE-119 GHSA-hr2h-gpm8-8hqc: Failure to validate the communication buffer and communication service in the BIOS may allow an attacker to tamper with the buffer resulting in potent
Failure to validate the communication buffer and communication service in the BIOS may allow an attacker to tamper with the buffer resulting in potential SMM (System Management Mode) arbitrary code execution.
Red Hat
hw: amd: arbitrary code execution in bios due to a fault in communication buffer
vendor_redhat·2023-01-10·CVSS 7.8
CVE-2021-26316 [HIGH] hw: amd: arbitrary code execution in bios due to a fault in communication buffer
hw: amd: arbitrary code execution in bios due to a fault in communication buffer
Failure to validate the communication buffer and communication service in the BIOS may allow an attacker to tamper with the buffer resulting in potential SMM (System Management Mode) arbitrary code execution.
A flaw was found in hw. Failure to validate the BIOS's communication buffer and communication service may allow an attacker to tamper with the buffer, resulting in potential System Management Mode (SMM) arbitrary code execution.
Mitigation: Please contact AMD for more updates on this flaw.
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 7) - Not affected
Package: kernel (Red Hat Ente
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2023-01-11
Published