9.8
CVSSv3

CVE-2021-26379

Published: 09/05/2023 Updated: 22/05/2023
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Insufficient input validation of mailbox data in the SMU may allow an malicious user to coerce the SMU to corrupt SMRAM, potentially leading to a loss of integrity and privilege escalation.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

amd epyc_72f3_firmware

amd epyc_7313_firmware

amd epyc_7313p_firmware

amd epyc_7343_firmware

amd epyc_7373x_firmware

amd epyc_73f3_firmware

amd epyc_7413_firmware

amd epyc_7443_firmware

amd epyc_7443p_firmware

amd epyc_7453_firmware

amd epyc_7473x_firmware

amd epyc_74f3_firmware

amd epyc_7513_firmware

amd epyc_7543_firmware

amd epyc_7543p_firmware

amd epyc_7573x_firmware

amd epyc_75f3_firmware

amd epyc_7643_firmware

amd epyc_7663_firmware

amd epyc_7713_firmware

amd epyc_7713p_firmware

amd epyc_7763_firmware

amd epyc_7773x_firmware

amd epyc_7232p_firmware

amd epyc_7252_firmware

amd epyc_7262_firmware

amd epyc_7272_firmware

amd epyc_7282_firmware

amd epyc_7302_firmware

amd epyc_7302p_firmware

amd epyc_7352_firmware

amd epyc_7402_firmware

amd epyc_7402p_firmware

amd epyc_7452_firmware

amd epyc_7502_firmware

amd epyc_7502p_firmware

amd epyc_7532_firmware

amd epyc_7542_firmware

amd epyc_7552_firmware

amd epyc_7642_firmware

amd epyc_7662_firmware

amd epyc_7702_firmware

amd epyc_7702p_firmware

amd epyc_7742_firmware

amd epyc_7f32_firmware

amd epyc_7f52_firmware

amd epyc_7f72_firmware

amd epyc_7h12_firmware