Vulnerabilities > CVE-2021-46779 - Out-of-bounds Write vulnerability in AMD products

047910
CVSS 7.1 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
NONE
Integrity impact
HIGH
Availability impact
HIGH
local
low complexity
amd
CWE-787

Summary

Insufficient input validation in SVC_ECC_PRIMITIVE system call in a compromised user application or ABL may allow an attacker to corrupt ASP (AMD Secure Processor) OS memory which may lead to potential loss of integrity and availability.

Vulnerable Configurations

Part Description Count
OS
Amd
3
Hardware
Amd
3

Common Weakness Enumeration (CWE)