A malicious attacker in x86 can misconfigure the Trusted Memory Regions (TMRs), which may allow the attacker to set an arbitrary address range for the TMR, potentially leading to a loss of integrity and availability.
Conclusion & alert: CVE-2021-26367 is rated Low Risk (26.1/100): CVSS Medium severity, with low exploitation likelihood (EPSS 0.04%). Mandatory action: Monitor for updates and reassess as exploit intelligence or EPSS changes.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2024-08-14 | — | 0.04% | — |
Full EPSS history (1 record total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 5.7 | 3.1 | MEDIUM |
|
0.5 | 5.2 | [email protected] |
| 6.0 | 3.1 | MEDIUM |
|
0.8 | 5.2 | [email protected] |
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| amd | radeon_software | < 23.12.1 | cpe:2.3:a:amd:radeon_software:*:*:*:*:adrenalin:*:*:* |
| amd | radeon_software | <= 23.q4 | cpe:2.3:a:amd:radeon_software:*:*:*:*:pro:*:*:* |
| amd | ryzen_9_5980hx_firmware | < cezannepi-fp6_1.0.0.6 | cpe:2.3:o:amd:ryzen_9_5980hx_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_3_3300u_firmware | < picassopi-fp5_1.0.0.e | cpe:2.3:o:amd:ryzen_3_3300u_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_3_3350u_firmware | < picassopi-fp5_1.0.0.e | cpe:2.3:o:amd:ryzen_3_3350u_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_5_3450u_firmware | < picassopi-fp5_1.0.0.e | cpe:2.3:o:amd:ryzen_5_3450u_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_5_3500u_firmware | < picassopi-fp5_1.0.0.e | cpe:2.3:o:amd:ryzen_5_3500u_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_5_3500c_firmware | < picassopi-fp5_1.0.0.e | cpe:2.3:o:amd:ryzen_5_3500c_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_5_3550h_firmware | < picassopi-fp5_1.0.0.e | cpe:2.3:o:amd:ryzen_5_3550h_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_5_3580u_firmware | < picassopi-fp5_1.0.0.e | cpe:2.3:o:amd:ryzen_5_3580u_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_7_3700u_firmware | < picassopi-fp5_1.0.0.e | cpe:2.3:o:amd:ryzen_7_3700u_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_7_3700c_firmware | < picassopi-fp5_1.0.0.e | cpe:2.3:o:amd:ryzen_7_3700c_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_7_3750h_firmware | < picassopi-fp5_1.0.0.e | cpe:2.3:o:amd:ryzen_7_3750h_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_7_3780u_firmware | < picassopi-fp5_1.0.0.e | cpe:2.3:o:amd:ryzen_7_3780u_firmware:*:*:*:*:*:*:*:* |
| amd | athlon_gold_3150c_firmware | < picassopi-fp5_1.0.0.e | cpe:2.3:o:amd:athlon_gold_3150c_firmware:*:*:*:*:*:*:*:* |
| amd | athlon_gold_3150u_firmware | < picassopi-fp5_1.0.0.e | cpe:2.3:o:amd:athlon_gold_3150u_firmware:*:*:*:*:*:*:*:* |
| amd | athlon_pro_3145b_firmware | < picassopi-fp5_1.0.0.e | cpe:2.3:o:amd:athlon_pro_3145b_firmware:*:*:*:*:*:*:*:* |
| amd | athlon_silver_3050c_firmware | < picassopi-fp5_1.0.0.e | cpe:2.3:o:amd:athlon_silver_3050c_firmware:*:*:*:*:*:*:*:* |
| amd | athlon_silver_3050u_firmware | < picassopi-fp5_1.0.0.e | cpe:2.3:o:amd:athlon_silver_3050u_firmware:*:*:*:*:*:*:*:* |
| amd | athlon_pro_3045b_firmware | < picassopi-fp5_1.0.0.e | cpe:2.3:o:amd:athlon_pro_3045b_firmware:*:*:*:*:*:*:*:* |
| amd | athlon_silver_3050e_firmware | < picassopi-fp5_1.0.0.e | cpe:2.3:o:amd:athlon_silver_3050e_firmware:*:*:*:*:*:*:*:* |
| amd | athlon_gold_pro_3150g_firmware | < comboam4pi_1.0.0.9 | cpe:2.3:o:amd:athlon_gold_pro_3150g_firmware:*:*:*:*:*:*:*:* |
| amd | athlon_gold_3150g_firmware | < comboam4pi_1.0.0.9 | cpe:2.3:o:amd:athlon_gold_3150g_firmware:*:*:*:*:*:*:*:* |
| amd | athlon_gold_pro_3150ge_firmware | < comboam4pi_1.0.0.9 | cpe:2.3:o:amd:athlon_gold_pro_3150ge_firmware:*:*:*:*:*:*:*:* |
| amd | athlon_pro_300ge_firmware | < comboam4pi_1.0.0.9 | cpe:2.3:o:amd:athlon_pro_300ge_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_3_4300ge_firmware | < comboam4v2_pi_1.2.0.5 | cpe:2.3:o:amd:ryzen_3_4300ge_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_5_4600ge_firmware | < comboam4v2_pi_1.2.0.5 | cpe:2.3:o:amd:ryzen_5_4600ge_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_7_4700ge_firmware | < comboam4v2_pi_1.2.0.5 | cpe:2.3:o:amd:ryzen_7_4700ge_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_3_4300g_firmware | < comboam4v2_pi_1.2.0.5 | cpe:2.3:o:amd:ryzen_3_4300g_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_5_4600g_firmware | < comboam4v2_pi_1.2.0.5 | cpe:2.3:o:amd:ryzen_5_4600g_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_7_4700g_firmware | < comboam4v2_pi_1.2.0.5 | cpe:2.3:o:amd:ryzen_7_4700g_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_3_5300ge_firmware | < comboam4v2_pi_1.2.0.5 | cpe:2.3:o:amd:ryzen_3_5300ge_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_3_5300g_firmware | < comboam4v2_pi_1.2.0.5 | cpe:2.3:o:amd:ryzen_3_5300g_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_5_5600ge_firmware | < comboam4v2_pi_1.2.0.5 | cpe:2.3:o:amd:ryzen_5_5600ge_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_5_5600g_firmware | < comboam4v2_pi_1.2.0.5 | cpe:2.3:o:amd:ryzen_5_5600g_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_7_5700ge_firmware | < comboam4v2_pi_1.2.0.5 | cpe:2.3:o:amd:ryzen_7_5700ge_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_7_5700g_firmware | < comboam4v2_pi_1.2.0.5 | cpe:2.3:o:amd:ryzen_7_5700g_firmware:*:*:*:*:*:*:*:* |
| URL | Tags |
|---|---|
| https://www.amd.com/en/resources/product-security/bulletin/amd-sb-4004.html | Vendor Advisory |
| https://www.amd.com/en/resources/product-security/bulletin/amd-sb-6005.html | Vendor Advisory |