CVE-2023-20521 - CERT CVE
ID CVE-2023-20521
Sažetak TOCTOU in the ASP Bootloader may allow an attacker with physical access to tamper with SPI ROM records after memory content verification, potentially leading to loss of confidentiality or a denial of service.
Reference
CVSS
Base: 5.7
Impact: 5.2
Exploitability:0.5
Pristup
VektorSloženostAutentikacija
PHYSICAL HIGH NONE
Impact
PovjerljivostCjelovitostDostupnost
HIGH NONE HIGH
CVSS vektor CVSS:3.1/AV:P/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:H
Zadnje važnije ažuriranje 18-06-2024 - 19:15
Objavljeno 14-11-2023 - 19:15