VYPR
High severity7.4NVD Advisory· Published May 9, 2023· Updated Jun 17, 2026

CVE-2021-26356

CVE-2021-26356

Description

A TOCTOU in ASP bootloader may allow an attacker to tamper with the SPI ROM following data read to memory potentially resulting in S3 data corruption and information disclosure.

Affected products

107

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.