A TOCTOU in ASP bootloader may allow an attacker to tamper with the SPI ROM following data read to memory potentially resulting in S3 data corruption and information disclosure.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: AMD

Published: 2023-05-09T18:58:48.108Z

Updated: 2023-05-09T18:58:48.108Z

Reserved: 2021-01-29T21:24:26.149Z


Link: CVE-2021-26356

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-05-09T19:15:10.737

Modified: 2023-05-16T19:01:36.007


Link: CVE-2021-26356

JSON object: View

cve-icon Redhat Information

No data.

CWE