On Ampere Altra and AltraMax devices before SRP 1.09, the Altra reference design of UEFI accesses allows insecure access to SPI-NOR by the OS/hypervisor component.
Link | Tags |
---|---|
https://amperecomputing.com | vendor advisory |
https://amperecomputing.com/products/security-bulletins/altra-spi-nor-smc-protection-for-ampere-website.html | broken link |
https://amperecomputing.com/products/security-bulletins/altra-spi-nor-smc.html | vendor advisory |