Vulnerabilities > AMD > Ryzen 3970X Firmware > castlepeakpi.sp3r3.1.0.0.7

DATE CVE VULNERABILITY TITLE RISK
2023-05-09 CVE-2021-46760 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in AMD products
A malicious or compromised UApp or ABL can send a malformed system call to the bootloader, which may result in an out-of-bounds memory access that may potentially lead to an attacker leaking sensitive information or achieving code execution.
network
low complexity
amd CWE-119
critical
9.8