CVE-2021-46746
published 2024-08-13CVE-2021-46746: Lack of stack protection exploit mechanisms in ASP Secure OS Trusted Execution Environment (TEE) may allow a privileged attacker with access to AMD signing…
PriorityP423medium5.2CVSS 3.1
AVLACHPRHUINSUCLILAH
EPSS
0.15%
4.9th percentile
Lack of stack protection exploit mechanisms in ASP Secure OS Trusted Execution Environment (TEE) may allow a privileged attacker with access to AMD signing
keys to c006Frrupt the return address, causing a
stack-based buffer overrun, potentially leading to a denial of service.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| amd | amd_athlon_3000_series_mobile_processors_with_radeon_graphics | — | — |
| amd | amd_epyc_7001_processors | — | — |
| amd | amd_epyc_7002_processors | — | — |
| amd | amd_epyc_7003_processors | — | — |
| amd | amd_epyc_9004_processors | — | — |
| amd | amd_epyc_embedded_3000_series_processors | — | — |
| amd | amd_epyc_embedded_7002_series_processors | — | — |
| amd | amd_epyc_embedded_7003_series_processors | — | — |
| amd | amd_epyc_embedded_9003_series_processors | — | — |
| amd | amd_ryzen_7000_series_desktop_processors | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2024-08-13
Published