CVE-2021-26356 - CERT CVE
ID CVE-2021-26356
Sažetak A TOCTOU in ASP bootloader may allow an attacker to tamper with the SPI ROM following data read to memory potentially resulting in S3 data corruption and information disclosure.
Reference
CVSS
Base: 7.4
Impact: 5.2
Exploitability:2.2
Pristup
VektorSloženostAutentikacija
NETWORK HIGH NONE
Impact
PovjerljivostCjelovitostDostupnost
HIGH HIGH NONE
CVSS vektor CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N
Zadnje važnije ažuriranje 28-01-2025 - 16:15
Objavljeno 09-05-2023 - 19:15