cbcvebase.
CVE-2021-26391
published 2022-11-09

CVE-2021-26391: Insufficient verification of multiple header signatures while loading a Trusted Application (TA) may allow an attacker with privileges to gain code execution…

high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
Insufficient verification of multiple header signatures while loading a Trusted Application (TA) may allow an attacker with privileges to gain code execution in that TA or the OS/kernel.

Affected

9 ranges
VendorProductVersion rangeFixed in
amdamd_radeon_rx_5000_series_pro_w5000_series>= AMD Radeon Pro Software Enterprise < 22.Q222.Q2
amdamd_radeon_rx_5000_series_pro_w5000_series>= AMD Radeon Software < 22.5.222.5.2
amdamd_radeon_rx_5000_series_pro_w5000_series>= Enterprise Driver < 22.10.2022.10.20
amdamd_radeon_rx_6000_series_pro_w6000_series>= AMD Radeon Pro Software Enterprise < 22.Q222.Q2
amdamd_radeon_rx_6000_series_pro_w6000_series>= AMD Radeon Software < 22.5.222.5.2
amdamd_radeon_rx_6000_series_pro_w6000_series>= Enterprise Driver < 22.10.2022.10.20
amdenterprise_driver< 22.10.2022.10.20
amdradeon_pro_software< 22.q222.q2
amdradeon_software< 22.5.222.5.2