CVE-2021-26365

high

Description

Certain size values in firmware binary headers could trigger out of bounds reads during signature validation, leading to denial of service or potentially limited leakage of information about out-of-bounds memory contents.

References

https://www.amd.com/en/corporate/product-security/bulletin/AMD-SB-4001

Details

Source: Mitre, NVD

Published: 2023-05-09

Updated: 2026-06-17

Risk Information

CVSS v2

Base Score: 8.5

Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:N/A:C

Severity: High

CVSS v3

Base Score: 8.2

Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:H

Severity: High

EPSS

EPSS: 0.00174