An attacker with root account privileges can load any legitimately signed firmware image into the Audio Co-Processor (ACP,) irrespective of the respective signing key being declared as usable for authenticating an ACP firmware image, potentially resulting in a denial of service.
Conclusion & alert: CVE-2021-26382 is rated Low Risk (20.4/100): CVSS Medium severity, with low exploitation likelihood (EPSS 0.18%). Mandatory action: Monitor for updates and reassess as exploit intelligence or EPSS changes.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2026-06-15 | 0.05% | 0.18% | +0.13% |
| 2 | 2026-04-03 | 0.12% | 0.05% | -0.07% |
| 3 | 2025-11-21 | — | 0.12% | — |
Full EPSS history (7 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 4.4 | 3.1 | MEDIUM |
|
0.8 | 3.6 | [email protected] |
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| amd | ryzen_7_5700g_firmware | < comboam4_v2_pi_1.2.0.6c | cpe:2.3:o:amd:ryzen_7_5700g_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_7_5700ge_firmware | < comboam4_v2_pi_1.2.0.6c | cpe:2.3:o:amd:ryzen_7_5700ge_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_5_5600g_firmware | < comboam4_v2_pi_1.2.0.6c | cpe:2.3:o:amd:ryzen_5_5600g_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_5_5600ge_firmware | < comboam4_v2_pi_1.2.0.6c | cpe:2.3:o:amd:ryzen_5_5600ge_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_3_5300g_firmware | < comboam4_v2_pi_1.2.0.6c | cpe:2.3:o:amd:ryzen_3_5300g_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_3_5300ge_firmware | < comboam4_v2_pi_1.2.0.6c | cpe:2.3:o:amd:ryzen_3_5300ge_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_9_5980hx_firmware | < cezannepi-fp6_1.0.0.9 | cpe:2.3:o:amd:ryzen_9_5980hx_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_9_5980hs_firmware | < cezannepi-fp6_1.0.0.9 | cpe:2.3:o:amd:ryzen_9_5980hs_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_7_5825u_firmware | < cezannepi-fp6_1.0.0.9 | cpe:2.3:o:amd:ryzen_7_5825u_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_9_5900hx_firmware | < cezannepi-fp6_1.0.0.9 | cpe:2.3:o:amd:ryzen_9_5900hx_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_9_5900hs_firmware | < cezannepi-fp6_1.0.0.9 | cpe:2.3:o:amd:ryzen_9_5900hs_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_7_5825c_firmware | < cezannepi-fp6_1.0.0.9 | cpe:2.3:o:amd:ryzen_7_5825c_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_7_5800h_firmware | < cezannepi-fp6_1.0.0.9 | cpe:2.3:o:amd:ryzen_7_5800h_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_5_5625u_firmware | < cezannepi-fp6_1.0.0.9 | cpe:2.3:o:amd:ryzen_5_5625u_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_7_5800hs_firmware | < cezannepi-fp6_1.0.0.9 | cpe:2.3:o:amd:ryzen_7_5800hs_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_5_5625c_firmware | < cezannepi-fp6_1.0.0.9 | cpe:2.3:o:amd:ryzen_5_5625c_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_5_5600h_firmware | < cezannepi-fp6_1.0.0.9 | cpe:2.3:o:amd:ryzen_5_5600h_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_5_5600hs_firmware | < cezannepi-fp6_1.0.0.9 | cpe:2.3:o:amd:ryzen_5_5600hs_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_7_5800u_firmware | < cezannepi-fp6_1.0.0.9 | cpe:2.3:o:amd:ryzen_7_5800u_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_5_5600u_firmware | < cezannepi-fp6_1.0.0.9 | cpe:2.3:o:amd:ryzen_5_5600u_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_5_5560u_firmware | < cezannepi-fp6_1.0.0.9 | cpe:2.3:o:amd:ryzen_5_5560u_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_3_5425u_firmware | < cezannepi-fp6_1.0.0.9 | cpe:2.3:o:amd:ryzen_3_5425u_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_3_5425c_firmware | < cezannepi-fp6_1.0.0.9 | cpe:2.3:o:amd:ryzen_3_5425c_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_3_5400u_firmware | < cezannepi-fp6_1.0.0.9 | cpe:2.3:o:amd:ryzen_3_5400u_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_3_5125c_firmware | < cezannepi-fp6_1.0.0.9 | cpe:2.3:o:amd:ryzen_3_5125c_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_3_3200u_firmware | < renoirpi-fp6_1.0.0.7 | cpe:2.3:o:amd:ryzen_3_3200u_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_3_3250u_firmware | < renoirpi-fp6_1.0.0.7 | cpe:2.3:o:amd:ryzen_3_3250u_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_3_3300u_firmware | < renoirpi-fp6_1.0.0.7 | cpe:2.3:o:amd:ryzen_3_3300u_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_5_3500u_firmware | < renoirpi-fp6_1.0.0.7 | cpe:2.3:o:amd:ryzen_5_3500u_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_5_3550h_firmware | < renoirpi-fp6_1.0.0.7 | cpe:2.3:o:amd:ryzen_5_3550h_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_5_3580u_firmware | < renoirpi-fp6_1.0.0.7 | cpe:2.3:o:amd:ryzen_5_3580u_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_7_3700u_firmware | < renoirpi-fp6_1.0.0.7 | cpe:2.3:o:amd:ryzen_7_3700u_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_7_pro_3700u_firmware | < renoirpi-fp6_1.0.0.7 | cpe:2.3:o:amd:ryzen_7_pro_3700u_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_7_3750h_firmware | < renoirpi-fp6_1.0.0.7 | cpe:2.3:o:amd:ryzen_7_3750h_firmware:*:*:*:*:*:*:*:* |
| amd | ryzen_7_3780u_firmware | < renoirpi-fp6_1.0.0.7 | cpe:2.3:o:amd:ryzen_7_3780u_firmware:*:*:*:*:*:*:*:* |
| URL | Tags |
|---|---|
| https://www.amd.com/en/corporate/product-security/bulletin/amd-sb-1027 | Vendor Advisory |