cbcvebase.
CVE-2021-26343
published 2023-01-11

CVE-2021-26343: Insufficient validation in ASP BIOS and DRTM commands may allow malicious supervisor x86 software to disclose the contents of sensitive memory which may result…

medium5.5CVSS 3.1
AVLACLPRLUINSUCHINAN
Insufficient validation in ASP BIOS and DRTM commands may allow malicious supervisor x86 software to disclose the contents of sensitive memory which may result in information disclosure.

Affected

25 ranges
VendorProductVersion rangeFixed in
amd3rd_gen_epyc
amdepyc_7003_firmware< milanpi_1.0.0.3milanpi_1.0.0.3
amdepyc_72f3_firmware< milanpi_1.0.0.3milanpi_1.0.0.3
amdepyc_7313_firmware< milanpi_1.0.0.3milanpi_1.0.0.3
amdepyc_7313p_firmware< milanpi_1.0.0.3milanpi_1.0.0.3
amdepyc_7343_firmware< milanpi_1.0.0.3milanpi_1.0.0.3
amdepyc_7373x_firmware< milanpi_1.0.0.3milanpi_1.0.0.3
amdepyc_73f3_firmware< milanpi_1.0.0.3milanpi_1.0.0.3
amdepyc_7413_firmware< milanpi_1.0.0.3milanpi_1.0.0.3
amdepyc_7443_firmware< milanpi_1.0.0.3milanpi_1.0.0.3
amdepyc_7443p_firmware< milanpi_1.0.0.3milanpi_1.0.0.3
amdepyc_7453_firmware< milanpi_1.0.0.3milanpi_1.0.0.3
amdepyc_74f3_firmware< milanpi_1.0.0.3milanpi_1.0.0.3
amdepyc_7513_firmware< milanpi_1.0.0.3milanpi_1.0.0.3
amdepyc_7543_firmware< milanpi_1.0.0.3milanpi_1.0.0.3
amdepyc_7543p_firmware< milanpi_1.0.0.3milanpi_1.0.0.3
amdepyc_7573x_firmware< milanpi_1.0.0.3milanpi_1.0.0.3
amdepyc_75f3_firmware< milanpi_1.0.0.3milanpi_1.0.0.3
amdepyc_7643_firmware< milanpi_1.0.0.3milanpi_1.0.0.3
amdepyc_7663_firmware< milanpi_1.0.0.3milanpi_1.0.0.3
amdepyc_7713_firmware< milanpi_1.0.0.3milanpi_1.0.0.3
amdepyc_7713p_firmware< milanpi_1.0.0.3milanpi_1.0.0.3
amdepyc_7743_firmware< milanpi_1.0.0.3milanpi_1.0.0.3
amdepyc_7763_firmware< milanpi_1.0.0.3milanpi_1.0.0.3
amdepyc_7773x_firmware< milanpi_1.0.0.3milanpi_1.0.0.3