CVE-2021-46750

LOW

AMD Athlon 3000 Series Mobile Processors with Radeon Graphics - Integer Overflow via Graphics Mailbox Message Handling

Title source: llm
STIX 2.1

Description

Failure to validate the address and size in TEE (Trusted Execution Environment) may allow a malicious x86 attacker to send malformed messages to the graphics mailbox resulting in an overlap of a TMR (Trusted Memory Region) that was previously allocated by the ASP bootloader leading to a potential loss of integrity.

Scores

CVSS v3 3.0
EPSS 0.0002
EPSS Percentile 4.5%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:L/I:L/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-190
Status published
Products (16)
AMD/AMD Athlon™ 3000 Series Mobile Processors with Radeon™ Graphics PicassoPI-FP5 1.0.0.E
AMD/AMD Radeon™ PRO V620 Graphics Products Contact your AMD Customer Engineering representative
AMD/AMD Radeon™ PRO W6000 Series Graphics Products AMD Software: PRO Edition 23.Q4 (23.30.13.03)
AMD/AMD Radeon™ RX 6000 Series Graphics Products AMD Software: Adrenalin Edition 23.12.1 (23.30.13.01)
AMD/AMD Ryzen™ 3000 Series Mobile Processors with Radeon™ Graphics PicassoPI-FP5 1.0.0.E
AMD/AMD Ryzen™ 4000 Series Desktop Processors ComboAM4v2 PI 1.2.0.5
AMD/AMD Ryzen™ 4000 Series Mobile Processors with Radeon™ Graphics RenoirPI-FP6 1.0.0.8
AMD/AMD Ryzen™ 5000 Series Mobile Processors with Radeon™ Graphics CezannePI-FP6 1.0.0.8
AMD/AMD Ryzen™ 6000 Series Processors with Radeon™ Graphics RembrandtPI-FP7_0.0.8.0 RC1
AMD/AMD Ryzen™ 7030 Series Mobile Processors with Radeon™ Graphics CezannePI-FP6 1.0.0.8
... and 6 more
Published Sep 06, 2025
Tracked Since Feb 18, 2026