Insufficient Validation Vulnerability in AMD Secure Processor Bootloader
CVE-2021-46758
Key Information:
- Vendor
Amd
- Status
- Vendor
- CVE Published:
- 14 November 2023
What is CVE-2021-46758?
The AMD Secure Processor bootloader features insufficient validation of SPI flash addresses, potentially enabling an attacker to access data in memory areas beyond the designated SPI flash. This may result in a compromise of both the availability and integrity of data, posing significant risks to the security posture of affected systems.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
AMD Ryzen™ 5000 Series Processors with Radeon™ Graphics “Barcelo” x86 various
AMD Ryzen™ 6000 Series Processors with Radeon™ Graphics "Rembrandt" x86 various
AMD Ryzen™ 7030 Series Mobile Processors with Radeon™ Graphics “Barcelo-R” x86 various
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved