Description
Failure to validate the address and size in TEE (Trusted Execution Environment) may allow a malicious x86 attacker to send malformed messages to the graphics mailbox resulting in an overlap of a TMR (Trusted Memory Region) that was previously allocated by the ASP bootloader leading to a potential loss of integrity.
Problem types
CWE-190 Integer Overflow or Wraparound
Product status
PicassoPI-FP5 1.0.0.E
PicassoPI-FP5 1.0.0.E
RembrandtPI-FP7_0.0.8.0 RC1
RenoirPI-FP6 1.0.0.8
RembrandtPI-FP7_0.0.8.0 RC1
CezannePI-FP6 1.0.0.8
CezannePI-FP6 1.0.0.8
ComboAM4v2 PI 1.2.0.5
EmbeddedPI-FP5_1.2.0.A
EmbeddedR2KPI-FP5_1.0.0.2
EmbeddedPI-FP5_1.2.0.A
EmbeddedPI-FP6_1.0.0.6
EmbeddedPI-FP7r2_1000
AMD Software: Adrenalin Edition 23.12.1 (23.30.13.01)
AMD Software: PRO Edition 23.Q4 (23.30.13.03)
Contact your AMD Customer Engineering representative
References
www.amd.com/...es/product-security/bulletin/AMD-SB-4012.html
www.amd.com/...es/product-security/bulletin/AMD-SB-6018.html
www.amd.com/...es/product-security/bulletin/AMD-SB-5007.html