CVE-2021-26348
Advisory lineage Upstream: 0 Downstream: 40
Modified
Published: 11 May 2022, 16:26
Last modified:16 Sept 2024, 16:27
Vulnerability Summary
Overall Risk (default)
low
22/100 CVSS Score
5.5 MEDIUM
v3.1 (nvd)
EPSS Score
0.13% LOW
0% probability +0.02%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected
Timeline
11 May 2022, 16:26
Published
Vulnerability first disclosed
16 Sept 2024, 16:27
Last Modified
Vulnerability information updated
Description
Failure to flush the Translation Lookaside Buffer (TLB) of the I/O memory management unit (IOMMU) may lead an IO device to write to memory it should not be able to access, resulting in a potential loss of integrity.
CVSS Metrics
- v3.1•MEDIUM•Score: 5.5CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
- v2.0•LOW•Score: 2.1AV:L/AC:L/Au:N/C:N/I:P/A:N
EPSS Trends
Current EPSS score: 0.13%• Percentile: 33%
Affected Systems
- amd•epyc_72f3_firmware
< milanpi-sp3_1.0.0.7
- amd•epyc_7313_firmware
< milanpi-sp3_1.0.0.7
- amd•epyc_7313p_firmware
< milanpi-sp3_1.0.0.7
- amd•epyc_7343_firmware
< milanpi-sp3_1.0.0.7
- amd•epyc_7373x_firmware
< milanpi-sp3_1.0.0.7
- amd•epyc_73f3_firmware
< milanpi-sp3_1.0.0.7
- amd•epyc_7413_firmware
< milanpi-sp3_1.0.0.7
- amd•epyc_7443_firmware
< milanpi-sp3_1.0.0.7
- amd•epyc_7443p_firmware
< milanpi-sp3_1.0.0.7
- amd•epyc_7453_firmware
< milanpi-sp3_1.0.0.7
- amd•epyc_7473x_firmware
< milanpi-sp3_1.0.0.7
- amd•epyc_74f3_firmware
< milanpi-sp3_1.0.0.7
- amd•epyc_7513_firmware
< milanpi-sp3_1.0.0.7
- amd•epyc_7543_firmware
< milanpi-sp3_1.0.0.7
- amd•epyc_7543p_firmware
< milanpi-sp3_1.0.0.7
- amd•epyc_7573x_firmware
< milanpi-sp3_1.0.0.7
- amd•epyc_75f3_firmware
< milanpi-sp3_1.0.0.7
- amd•epyc_7643_firmware
< milanpi-sp3_1.0.0.7
- amd•epyc_7663_firmware
< milanpi-sp3_1.0.0.7
- amd•epyc_7713_firmware
< milanpi-sp3_1.0.0.7
- amd•epyc_7713p_firmware
< milanpi-sp3_1.0.0.7
- amd•epyc_7763_firmware
< milanpi-sp3_1.0.0.7
- amd•epyc_7773x_firmware
< milanpi-sp3_1.0.0.7
- amd•epyc™ processors
various