Insufficient input validation in the ABL may allow a privileged
attacker with access to the BIOS menu or UEFI shell to tamper with the
structure headers in SPI ROM causing an out of bounds memory read and write,
potentially resulting in memory corruption or denial of service.
References
Configurations
No configuration.
History
05 Nov 2024, 22:35
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-125 CWE-787 |
|
Summary |
|
13 Aug 2024, 17:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-08-13 17:15
Updated : 2024-11-05 22:35
NVD link : CVE-2021-46772
Mitre link : CVE-2021-46772
CVE.ORG link : CVE-2021-46772
JSON object : View
Products Affected
No product.