Vulnerability Description
A malicious attacker in x86 can misconfigure the Trusted Memory Regions (TMRs), which may allow the attacker to set an arbitrary address range for the TMR, potentially leading to a loss of integrity and availability.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Amd | Radeon Software | < 23.12.1 |
| Amd | Radeon Rx 6300M | - |
| Amd | Radeon Rx 6400 | - |
| Amd | Radeon Rx 6450M | - |
| Amd | Radeon Rx 6500 Xt | - |
| Amd | Radeon Rx 6500M | - |
| Amd | Radeon Rx 6550M | - |
| Amd | Radeon Rx 6550S | - |
| Amd | Radeon Rx 6600 | - |
| Amd | Radeon Rx 6600 Xt | - |
| Amd | Radeon Rx 6600M | - |
| Amd | Radeon Rx 6600S | - |
| Amd | Radeon Rx 6650 Xt | - |
| Amd | Radeon Rx 6650M | - |
| Amd | Radeon Rx 6650M Xt | - |
| Amd | Radeon Rx 6700 | - |
| Amd | Radeon Rx 6700 Xt | - |
| Amd | Radeon Rx 6700M | - |
| Amd | Radeon Rx 6700S | - |
| Amd | Radeon Rx 6750 Gre | - |
References
- https://www.amd.com/en/resources/product-security/bulletin/amd-sb-4004.htmlVendor Advisory
- https://www.amd.com/en/resources/product-security/bulletin/amd-sb-6005.htmlVendor Advisory
FAQ
What is CVE-2021-26367?
CVE-2021-26367 is a vulnerability with a CVSS score of 5.7 (MEDIUM). A malicious attacker in x86 can misconfigure the Trusted Memory Regions (TMRs), which may allow the attacker to set an arbitrary address range for the TMR, potentially leading to a loss of integrity a...
How severe is CVE-2021-26367?
CVE-2021-26367 has been rated MEDIUM with a CVSS base score of 5.7/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-26367?
Check the references section above for vendor advisories and patch information. Affected products include: Amd Radeon Software, Amd Radeon Rx 6300M, Amd Radeon Rx 6400, Amd Radeon Rx 6450M, Amd Radeon Rx 6500 Xt.