Security Advisory

CVE-2021-26315

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2021-11-16 18:12:07
Last updated 2024-09-17 01:21:40
Assigner AMD
CVSS score not scored
State PUBLISHED

Description

When the AMD Platform Security Processor (PSP) boot rom loads, authenticates, and subsequently decrypts an encrypted FW, due to insufficient verification of the integrity of decrypted image, arbitrary code may be executed in the PSP when encrypted firmware images are used.