Security Advisory

CVE-2021-46754

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-05-09 19:00:16
Last updated 2024-08-04 05:17:42
Assigner AMD
State PUBLISHED

Description

Insufficient input validation in the ASP (AMD Secure Processor) bootloader may allow an attacker with a compromised Uapp or ABL to coerce the bootloader into exposing sensitive information to the SMU (System Management Unit) resulting in a potential loss of confidentiality and integrity.