Home

Description

Insufficient granularity of access control in ASP (AMD Secure Processor) may allow an attacker with an untrusted user space application to map sensitive SMN (System Management Network) apertures leading to a potential escalation of privileges.

PUBLISHED Reserved 2022-03-31 | Published 2026-06-01 | Updated 2026-06-02 | Assigner AMD




HIGH: 7.1CVSS:4.0/AV:L/AC:H/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

Problem types

CWE-1220 Insufficient Granularity of Access Control

Product status

Default status
affected

PicassoPI-FP5 1.0.0.E
unaffected

Default status
affected

CastlePeakWSPI-sWRX8 1.0.0.9
unaffected

ChagallWSPI-sWRX8 1.0.0.2
unaffected

Default status
affected

ComboAM4v2 PI 1.2.0.6
unaffected

Default status
affected

ChagallWSPI-sWRX8 1.0.0.1
unaffected

Default status
affected

RenoirPI-FP6 1.0.0.8
unaffected

Default status
affected

PicassoPI-FP5 1.0.0.E
unaffected

Default status
affected

CezannePI-FP6 1.0.0.9
unaffected

Default status
affected

ComboAM4PI 1.0.0.9/ComboAM4 V2 PI 1.2.0.8
unaffected

Default status
affected

ComboAM4v2 PI 1.2.0.8
unaffected

Default status
affected

CezannePI-FP6 1.0.0.9
unaffected

Default status
affected

ComboAM4v2 PI 1.2.0.6
unaffected

Default status
affected

ComboAM4 V2 PI 1.2.0.8
unaffected

Default status
affected

EmbeddedPI-FP5_1.2.0.A
unaffected

Default status
affected

EmbeddedPI-FP5_1002
unaffected

Default status
affected

EmbAM4PI 1.0.0.2
unaffected

Default status
affected

EmbeddedPI-FP5_1.2.0.A
unaffected

Default status
affected

EmbeddedPI-FP5_1.2.0.A
unaffected

Default status
affected

EmbeddedPI-FP6_1.0.0.6
unaffected

Default status
affected

EmbeddedPI-FP7r2_0080
unaffected

Default status
affected

AMD Software: Adrenalin Edition 25.11.1 (25.10.33.03)
unaffected

Default status
affected

AMD Software: PRO Edition 25.Q3.1 (25.10.32)
unaffected

Default status
affected

AMD Software: Adrenalin Edition 25.11.1 (25.10.33.03)
unaffected

Default status
affected

AMD Software: Adrenalin Edition 25.11.1 (25.10.33.03)
unaffected

Default status
affected

AMD Software: PRO Edition 25.Q3.1 (25.10.32)
unaffected

Default status
affected

AMD Software: PRO Edition 25.Q3.1 (25.10.32)
unaffected

Default status
affected

Contact your AMD Customer Engineering representative
unaffected

Default status
affected

Contact your AMD Customer Engineering representative
unaffected

References

www.amd.com/...es/product-security/bulletin/AMD-SB-4017.html

www.amd.com/...es/product-security/bulletin/AMD-SB-6027.html

cve.org (CVE-2021-46747)

nvd.nist.gov (CVE-2021-46747)

Download JSON