cve/2024/CVE-2024-21970.md
2025-09-29 21:09:30 +02:00

42 lines
4.2 KiB
Markdown

### [CVE-2024-21970](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-21970)
![](https://img.shields.io/static/v1?label=Product&message=AMD%20Athlon%E2%84%A2%203000%20Series%20Desktop%20Processors%20with%20Radeon%E2%84%A2%20Graphics&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=AMD%20Athlon%E2%84%A2%203000%20Series%20Mobile%20Processors%20with%20Radeon%E2%84%A2%20Graphics&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=AMD%20Ryzen%E2%84%A2%203000%20Series%20Desktop%20Processors&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=AMD%20Ryzen%E2%84%A2%203000%20Series%20Mobile%20Processors%20with%20Radeon%E2%84%A2%20Graphics&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=AMD%20Ryzen%E2%84%A2%204000%20Series%20Mobile%20Processors%20with%20Radeon%E2%84%A2%20Graphics&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=AMD%20Ryzen%E2%84%A2%205000%20Series%20Desktop%20Processors&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=AMD%20Ryzen%E2%84%A2%205000%20Series%20Mobile%20Processors%20with%20Radeon%E2%84%A2%20Graphics&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=AMD%20Ryzen%E2%84%A2%206000%20Series%20Processors%20with%20Radeon%E2%84%A2%20Graphics&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=AMD%20Ryzen%E2%84%A2%207000%20Series%20Desktop%20Processors&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=AMD%20Ryzen%E2%84%A2%207020%20Series%20Processors%20with%20Radeon%E2%84%A2%20Graphics&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=AMD%20Ryzen%E2%84%A2%207030%20Series%20Mobile%20Processors%20with%20Radeon%E2%84%A2%20Graphics&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=AMD%20Ryzen%E2%84%A2%207035%20Series%20Processors%20with%20Radeon%E2%84%A2%20Graphics&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=AMD%20Ryzen%E2%84%A2%207045%20Series%20Mobile%20Processors%20with%20Radeon%E2%84%A2%20Graphics&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=AMD%20Ryzen%E2%84%A2%208000%20Series%20Desktop%20Processors&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=AMD%20Ryzen%E2%84%A2%20Embedded%205000%20Series%20Processors&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=AMD%20Ryzen%E2%84%A2%20Embedded%207000%20Series%20Processors&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=AMD%20Ryzen%E2%84%A2%20Embedded%20R1000%20Series%20Processors&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=AMD%20Ryzen%E2%84%A2%20Embedded%20R2000%20Series%20Processors&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=AMD%20Ryzen%E2%84%A2%20Embedded%20V1000%20Series%20Processors&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=AMD%20Ryzen%E2%84%A2%20Embedded%20V2000%20Series%20Processors&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=AMD%20Ryzen%E2%84%A2%20Embedded%20V3000%20Series%20Processors&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=AMD%20Ryzen%E2%84%A2%20Threadripper%E2%84%A2%203000%20Processors&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=AMD%20Ryzen%E2%84%A2%20Threadripper%E2%84%A2%20PRO%203000%20WX-Series%20Processors&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=AMD%20Ryzen%E2%84%A2%20Threadripper%E2%84%A2%20PRO%205000%20WX-Series%20Processors&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=Renoir%0ACezanne%0ARaven%20Ridge%0ARaven%20Ridge%202%0APicasso%0ASummit%0APinnacle%20Ridge%0AMatisse%0AVermeer&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=&color=brightgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-129%20%20Improper%20Validation%20of%20Array%20Index&color=brightgreen)
### Description
Improper validation of an array index in the AND power Management Firmware could allow a privileged attacker to corrupt AGESA memory potentially leading to a loss of integrity.
### POC
#### Reference
No PoCs from references.
#### Github
- https://github.com/fkie-cad/nvd-json-data-feeds