CVE-2024-21981: AMD Athlon 3000 Series Desktop Processors With Radeon Graphics

Medium severity, CVSS 5.7. EPSS: 0.1% chance of exploitation in the next 30 days.

Improper key usage control in AMD Secure Processor (ASP) may allow an attacker with local access who has gained arbitrary code execution privilege in ASP to extract ASP cryptographic keys, potentially resulting in loss of confidentiality and integrity.

Affected products

  • AMD AMD Athlon 3000 Series Desktop Processors With Radeon Graphics
  • AMD AMD Athlon 3000 Series Mobile Processors With Radeon Graphics
  • AMD AMD Epyc 7001 Series Processors
  • AMD AMD Epyc 7002 Series Processors
  • AMD AMD Epyc 7003 Series Processors
  • AMD AMD Epyc Embedded 3000 Series Processors
  • AMD AMD Epyc Embedded 7002 Series Processors
  • AMD AMD Epyc Embedded 7003 Series Processors
  • AMD AMD Ryzen 3000 Series Desktop Processors
  • AMD AMD Ryzen 3000 Series Mobile Processor With Radeon Graphics
  • AMD AMD Ryzen 4000 Series Desktop Processors With Radeon Graphics
  • AMD AMD Ryzen 5000 Series Desktop Processor With Radeon Graphics
  • AMD AMD Ryzen 5000 Series Desktop Processors
  • AMD AMD Ryzen Embedded 5000 Series Processors
  • AMD AMD Ryzen Embedded r1000 Series Processors
  • AMD AMD Ryzen Embedded r2000 Series Processors
  • AMD AMD Ryzen Embedded v1000 Series Processors
  • AMD AMD Ryzen Threadripper 3000 Series Processors
  • AMD AMD Ryzen Threadripper Pro 3000wx Series Processors
  • AMD AMD Ryzen Threadripper Pro 5000wx Processors
  • AMD Athlon: any version
  • AMD Epyc: any version
  • AMD Ryzen: any version

Published 2024-08-13. Last modified 2026-06-17.