Memory Exfiltration Vulnerability in ASP Stage 2 Bootloader

Memory Exfiltration Vulnerability in ASP Stage 2 Bootloader

CVE-2021-26361 · MEDIUM Severity

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

A malicious or compromised User Application (UApp) or AGESA Boot Loader (ABL) could be used by an attacker to exfiltrate arbitrary memory from the ASP stage 2 bootloader potentially leading to information disclosure.

Learn more about our User Device Pen Test.