CVE-2021-26387 - CERT CVE
ID CVE-2021-26387
Sažetak Insufficient access controls in ASP kernel may allow a privileged attacker with access to AMD signing keys and the BIOS menu or UEFI shell to map DRAM regions in protected areas, potentially leading to a loss of platform integrity.
Reference
CVSS
Base: 3.9
Impact: 2.7
Exploitability:0.8
Pristup
VektorSloženostAutentikacija
LOCAL HIGH HIGH
Impact
PovjerljivostCjelovitostDostupnost
NONE LOW LOW
CVSS vektor CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:N/I:L/A:L
Zadnje važnije ažuriranje 30-10-2024 - 18:35
Objavljeno 13-08-2024 - 17:15