VYPR
Critical severity9.8NVD Advisory· Published May 9, 2023· Updated Jun 17, 2026

CVE-2021-46760

CVE-2021-46760

Description

A malicious or compromised UApp or ABL can send a malformed system call to the bootloader, which may result in an out-of-bounds memory access that may potentially lead to an attacker leaking sensitive information or achieving code execution.

Affected products

3
  • AMD/bootloaderllm-create
  • AMD/3rd Gen AMD Ryzen™ Threadripper™ Processors “Castle Peak” HEDTv5
    Range: various
  • AMD/Ryzen™ Threadripper™ PRO Processors “Castle Peak” WSv5
    Range: various

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.