CVE-2021-46747 - CVE House
Back to Database
Status published High CVE-2021-46747

Insufficient granularity of access control in ASP (AMD Secure Processor)...

Vulnerability Description

Insufficient granularity of access control in ASP (AMD Secure Processor) may allow an attacker with an untrusted user space application to map sensitive SMN (System Management Network) apertures leading to a potential escalation of privileges.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2021-46747

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

AMD Athlon™ 3000 Series Mobile Processors with Radeon™ Graphics, AMD Ryzen™ Threadripper™ PRO 3000 WX-Series Processors, AMD Ryzen™ 5000 Series Desktop Processors with Radeon™ Graphics, AMD Ryzen™ Threadripper™ PRO 5000 WX-Series Processors, AMD Ryzen™ 4000 Series Mobile Processors with Radeon™ Graphics, AMD Ryzen™ 3000 Series Mobile Processors with Radeon™ Graphics, AMD Ryzen™ 5000 Series Mobile Processors with Radeon™ Graphics, AMD Ryzen™ 3000 Series Desktop Processors, AMD Athlon™ 3000 Series Desktop Processors with Radeon™ Graphics, AMD Ryzen™ 7030 Series Mobile Processors with Radeon™ Graphics, AMD Ryzen™ 4000 Series Desktop Processors, AMD Ryzen™ 5000 Series Desktop Processors, AMD Ryzen™ Embedded R1000 Series Processors, AMD Ryzen™ Embedded R2000 Series Processors, AMD Ryzen™ Embedded 5000 Series Processors, AMD Ryzen™ Embedded V1000 Series Processors (formerly codenamed "Raven Ridge"), AMD Ryzen™ Embedded V1000 Series Processors (formerly codenamed "Picasso"), AMD Ryzen™ Embedded V2000 Series Processors, AMD Ryzen™ Embedded V3000 Series Processors, AMD Radeon™ RX 5000 Series Graphics Products, AMD Radeon™ PRO W5000 Series Graphics Products, AMD Radeon™ RX 6000 Series Graphics Products, AMD Radeon™ RX 7000 Series Graphics Products, AMD Radeon™ PRO W6000 Series Graphics Products, AMD Radeon™ PRO W7000 Series Graphics Products, AMD Radeon™ PRO V520, AMD Radeon™ PRO V620
Vulnerable Versions:
PicassoPI-FP5 1.0.0.E, CastlePeakWSPI-sWRX8 1.0.0.9, ChagallWSPI-sWRX8 1.0.0.2, ComboAM4v2 PI 1.2.0.6, ChagallWSPI-sWRX8 1.0.0.1, RenoirPI-FP6 1.0.0.8, CezannePI-FP6 1.0.0.9, ComboAM4PI 1.0.0.9/ComboAM4 V2 PI 1.2.0.8, ComboAM4v2 PI 1.2.0.8, ComboAM4 V2 PI 1.2.0.8, EmbeddedPI-FP5_1.2.0.A, EmbeddedPI-FP5_1002, EmbAM4PI 1.0.0.2, EmbeddedPI-FP6_1.0.0.6, EmbeddedPI-FP7r2_0080, AMD Software: Adrenalin Edition 25.11.1 (25.10.33.03), AMD Software: PRO Edition 25.Q3.1 (25.10.32), Contact your AMD Customer Engineering representative

Timeline

Official Publish: June 1st, 2026
Last Modified: June 2nd, 2026
Added to House: July 21st, 2026

CVSS Vectors

Weaknesses (CWE)

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.