ASP Sensor Fusion Hub Vulnerability in AMD Products
CVE-2021-46753
9.1CRITICAL
Key Information:
- Vendor
Amd
- Status
- Ryzen™ 2000 Series Desktop Processors “raven Ridge” Am4
- Ryzen™ 5000 Series Desktop Processor With Radeon™ Graphics “cezanne” Am4
- Athlon™ 3000 Series Mobile Processors With Radeon™ Graphics “dali”/”dali” Ulp
- Athlon™ 3000 Series Mobile Processors With Radeon™ Graphics “pollock”
- Vendor
- CVE Published:
- 9 May 2023
What is CVE-2021-46753?
A vulnerability exists in the ASP Sensor Fusion Hub due to insufficient validation of length fields within sensor fusion hub headers. This flaw enables an attacker, leveraging a malicious user application (Uapp) or application binary loader (ABL), to map the ASP sensor fusion hub region and potentially overwrite its data structures. As a consequence, this may lead to a loss of data integrity and confidentiality.
Affected Version(s)
Athlon™ 3000 Series Mobile Processors with Radeon™ Graphics “Pollock” x86 various
Athlon™ 3000 Series Mobile Processors with Radeon™ Graphics “Dali”/”Dali” ULP x86 various
Ryzen™ 2000 series Desktop Processors “Raven Ridge” AM4 x86 various