CVE-2021-26361

A malicious or compromised User Application (UApp) or AGESA Boot Loader (ABL) could be used by an attacker to exfiltrate arbitrary memory from the ASP stage 2 bootloader potentially leading to information disclosure.
Configurations

Configuration 1 (hide)

cpe:2.3:a:amd:radeon_software:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:amd:ryzen_3_2200u_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:ryzen_3_2200u:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:amd:ryzen_3_2300u_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:ryzen_3_2300u:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:amd:ryzen_3_5125c_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:ryzen_3_5125c:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:amd:ryzen_3_5400u_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:ryzen_3_5400u:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:amd:athlon_3050ge_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:athlon_3050ge:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:amd:athlon_3150ge_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:athlon_3150ge:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:o:amd:athlon_3150g_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:athlon_3150g:-:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
cpe:2.3:o:amd:ryzen_3_5425c_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:ryzen_3_5425c:-:*:*:*:*:*:*:*

Configuration 10 (hide)

AND
cpe:2.3:o:amd:ryzen_3_5425u_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:ryzen_3_5425u:-:*:*:*:*:*:*:*

Configuration 11 (hide)

AND
cpe:2.3:o:amd:ryzen_5_2500u_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:ryzen_5_2500u:-:*:*:*:*:*:*:*

Configuration 12 (hide)

AND
cpe:2.3:o:amd:ryzen_5_2600_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:ryzen_5_2600:-:*:*:*:*:*:*:*

Configuration 13 (hide)

AND
cpe:2.3:o:amd:ryzen_5_2600h_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:ryzen_5_2600h:-:*:*:*:*:*:*:*

Configuration 14 (hide)

AND
cpe:2.3:o:amd:ryzen_5_2600x_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:ryzen_5_2600x:-:*:*:*:*:*:*:*

Configuration 15 (hide)

AND
cpe:2.3:o:amd:ryzen_5_5560u_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:ryzen_5_5560u:-:*:*:*:*:*:*:*

Configuration 16 (hide)

AND
cpe:2.3:o:amd:ryzen_5_5600h_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:ryzen_5_5600h:-:*:*:*:*:*:*:*

Configuration 17 (hide)

AND
cpe:2.3:o:amd:ryzen_5_5600hs_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:ryzen_5_5600hs:-:*:*:*:*:*:*:*

Configuration 18 (hide)

AND
cpe:2.3:o:amd:ryzen_5_5600u_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:ryzen_5_5600u:-:*:*:*:*:*:*:*

Configuration 19 (hide)

AND
cpe:2.3:o:amd:ryzen_5_5600x_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:ryzen_5_5600x:-:*:*:*:*:*:*:*

Configuration 20 (hide)

AND
cpe:2.3:o:amd:ryzen_5_5625c_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:ryzen_5_5625c:-:*:*:*:*:*:*:*

Configuration 21 (hide)

AND
cpe:2.3:o:amd:ryzen_5_5625u_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:ryzen_5_5625u:-:*:*:*:*:*:*:*

Configuration 22 (hide)

AND
cpe:2.3:o:amd:ryzen_5_5700g_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:ryzen_5_5700g:-:*:*:*:*:*:*:*

Configuration 23 (hide)

AND
cpe:2.3:o:amd:ryzen_5_5700ge_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:ryzen_5_5700ge:-:*:*:*:*:*:*:*

Configuration 24 (hide)

AND
cpe:2.3:o:amd:ryzen_7_2700u_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:ryzen_7_2700u:-:*:*:*:*:*:*:*

Configuration 25 (hide)

AND
cpe:2.3:o:amd:ryzen_7_2700_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:ryzen_7_2700:-:*:*:*:*:*:*:*

Configuration 26 (hide)

AND
cpe:2.3:o:amd:ryzen_7_2700x_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:ryzen_7_2700x:-:*:*:*:*:*:*:*

Configuration 27 (hide)

AND
cpe:2.3:o:amd:ryzen_7_2800h_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:ryzen_7_2800h:-:*:*:*:*:*:*:*

Configuration 28 (hide)

AND
cpe:2.3:o:amd:ryzen_7_5800h_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:ryzen_7_5800h:-:*:*:*:*:*:*:*

Configuration 29 (hide)

AND
cpe:2.3:o:amd:ryzen_7_5800hs_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:ryzen_7_5800hs:-:*:*:*:*:*:*:*

Configuration 30 (hide)

AND
cpe:2.3:o:amd:ryzen_7_5800u_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:ryzen_7_5800u:-:*:*:*:*:*:*:*

Configuration 31 (hide)

AND
cpe:2.3:o:amd:ryzen_7_5825c_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:ryzen_7_5825c:-:*:*:*:*:*:*:*

Configuration 32 (hide)

AND
cpe:2.3:o:amd:ryzen_7_5825u_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:ryzen_7_5825u:-:*:*:*:*:*:*:*

Configuration 33 (hide)

AND
cpe:2.3:o:amd:ryzen_9_5980hx_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:ryzen_9_5980hx:-:*:*:*:*:*:*:*

Configuration 34 (hide)

AND
cpe:2.3:o:amd:ryzen_9_5980hs_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:ryzen_9_5980hs:-:*:*:*:*:*:*:*

Configuration 35 (hide)

AND
cpe:2.3:o:amd:ryzen_9_5900hx_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:ryzen_9_5900hx:-:*:*:*:*:*:*:*

Configuration 36 (hide)

AND
cpe:2.3:o:amd:ryzen_9_5900hs_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:amd:ryzen_9_5900hs:-:*:*:*:*:*:*:*

History

21 Nov 2024, 05:56

Type Values Removed Values Added
References () https://www.amd.com/en/corporate/product-security/bulletin/amd-sb-1027 - Vendor Advisory () https://www.amd.com/en/corporate/product-security/bulletin/amd-sb-1027 - Vendor Advisory

08 Aug 2023, 14:22

Type Values Removed Values Added
CWE CWE-668 NVD-CWE-noinfo

Information

Published : 2022-05-12 18:16

Updated : 2024-11-21 05:56


NVD link : CVE-2021-26361

Mitre link : CVE-2021-26361

CVE.ORG link : CVE-2021-26361


JSON object : View

Products Affected

amd

  • ryzen_3_5425u
  • ryzen_7_5800hs
  • ryzen_9_5900hs_firmware
  • ryzen_3_5400u_firmware
  • ryzen_7_5800h_firmware
  • ryzen_3_5425u_firmware
  • ryzen_3_5125c
  • ryzen_5_5625u_firmware
  • ryzen_3_5425c_firmware
  • ryzen_9_5900hs
  • ryzen_3_5400u
  • ryzen_7_5800u_firmware
  • ryzen_5_5700ge
  • ryzen_5_2600h
  • ryzen_3_5125c_firmware
  • ryzen_7_2700x
  • ryzen_7_5800u
  • ryzen_5_2600h_firmware
  • ryzen_5_5560u
  • ryzen_5_5700ge_firmware
  • ryzen_5_5600x_firmware
  • ryzen_7_2700u
  • athlon_3150ge_firmware
  • ryzen_7_5825u_firmware
  • ryzen_9_5980hx_firmware
  • ryzen_3_2200u_firmware
  • ryzen_5_5560u_firmware
  • ryzen_7_5825c_firmware
  • ryzen_5_2500u
  • ryzen_7_2800h_firmware
  • ryzen_5_2600
  • ryzen_7_5825c
  • ryzen_7_2700x_firmware
  • ryzen_7_2700
  • ryzen_9_5900hx_firmware
  • ryzen_7_5825u
  • athlon_3150g_firmware
  • ryzen_3_2300u
  • ryzen_5_5700g_firmware
  • ryzen_5_5600u_firmware
  • athlon_3050ge
  • ryzen_9_5900hx
  • ryzen_9_5980hs
  • ryzen_5_5625u
  • ryzen_5_5700g
  • ryzen_3_2200u
  • ryzen_5_2500u_firmware
  • ryzen_3_5425c
  • ryzen_5_5600h
  • ryzen_7_5800h
  • ryzen_9_5980hx
  • ryzen_5_5600hs
  • ryzen_5_5625c
  • athlon_3150g
  • ryzen_7_5800hs_firmware
  • ryzen_5_5600x
  • ryzen_7_2700u_firmware
  • ryzen_7_2800h
  • ryzen_5_2600x
  • ryzen_5_5600hs_firmware
  • ryzen_9_5980hs_firmware
  • athlon_3050ge_firmware
  • ryzen_5_2600x_firmware
  • athlon_3150ge
  • ryzen_5_5600h_firmware
  • ryzen_3_2300u_firmware
  • radeon_software
  • ryzen_7_2700_firmware
  • ryzen_5_5625c_firmware
  • ryzen_5_5600u
  • ryzen_5_2600_firmware