High severity7.8NVD Advisory· Published Nov 16, 2021· Updated Jun 17, 2026
CVE-2021-26315
CVE-2021-26315
Description
When the AMD Platform Security Processor (PSP) boot rom loads, authenticates, and subsequently decrypts an encrypted FW, due to insufficient verification of the integrity of decrypted image, arbitrary code may be executed in the PSP when encrypted firmware images are used.
Affected products
22- AMD/3rd Gen AMD EPYC™v5Range: unspecified
Patches
Vulnerability mechanics
References
1- www.amd.com/en/corporate/product-security/bulletin/amd-sb-1021nvdVendor Advisory
News mentions
0No linked articles in our index yet.