CVE Browser

More filters (active)

Page 1 (more results available)

Vendor: AMD Remove filter Clear all
CVE-2026-28237 MEDIUM

Unrestricted resource allocation in AMD uProf may be exploitable to consume excessive system resources, potentially leading to a loss of availability.

CVSS 6.8 EPSS 0.14% Jun 9, 2026
CVE-2026-0466 MEDIUM

Improper access control in AMD uProf may allow a local attacker with user privileges to write to the kernel-shared memory section, potentially resulting in cra…

CVSS 6.8 EPSS 0.13% Jun 9, 2026
CVE-2026-49121 CRITICAL

AI Tensor Engine for ROCm (AITER) 0.1.14 Unauthenticated RCE via MessageQueue.recv() Pickle Deserialization

CVSS 9.2 EPSS 1.51% Jun 1, 2026
CVE-2024-36333 HIGH

A DLL hijacking vulnerability in the AMD Cleanup Utility could allow an attacker to achieve privilege escalation potentially resulting in arbitrary code execut…

CVSS 7.0 EPSS 0.12% May 15, 2026
CVE-2023-31364 HIGH

Improper handling of direct memory writes in the input-output memory management unit could allow a malicious guest virtual machine (VM) to flood a host with wr…

CVSS 8.3 EPSS 0.23% Feb 26, 2026
CVE-2025-54519 HIGH

A DLL hijacking vulnerability in Doc Nav could allow a local attacker to achieve privilege escalation, potentially resulting in arbitrary code execution.

CVSS 7.3 EPSS 0.13% Feb 12, 2026
CVE-2023-31323 HIGH

Type confusion in the AMD Secure Processor (ASP) could allow an attacker to pass a malformed argument to the External Global Memory Interconnect Trusted Agent…

CVSS 8.4 EPSS 0.14% Feb 12, 2026
CVE-2025-52533 HIGH

Improper Access Control in an on-chip debug interface could allow a privileged attacker to enable a debug interface and potentially compromise data confidentia…

CVSS 8.7 EPSS 0.29% Feb 12, 2026
CVE-2023-20548 HIGH

A Time-of-check time-of-use (TOCTOU) race condition in the AMD Secure Processor (ASP) could allow an attacker to corrupt memory resulting in loss of integrity,…

CVSS 7.1 EPSS 0.11% Feb 11, 2026
CVE-2023-31324 HIGH

A Time-of-check time-of-use (TOCTOU) race condition in the AMD Secure Processor (ASP) could allow an attacker to modify External Global Memory Interconnect Tru…

CVSS 7.1 EPSS 0.11% Feb 11, 2026
CVE-2025-29933 MEDIUM

Improper input validation within AMD uProf can allow a local attacker to write out of bounds, potentially resulting in a crash or denial of service

CVSS 5.5 EPSS 0.11% Nov 24, 2025
CVE-2025-48511 MEDIUM

Improper input validation within AMD uprof can allow a local attacker to write to an arbitrary physical address, potentially resulting in crash or denial of se…

CVSS 5.5 EPSS 0.11% Nov 24, 2025
CVE-2025-48510 HIGH

Improper return value within AMD uProf can allow a local attacker to bypass KSLR, potentially resulting in loss of confidentiality or availability.

CVSS 7.1 EPSS 0.13% Nov 24, 2025
CVE-2025-48507 HIGH

The security state of the calling processor into Trusted Firmware (TF-A) is not used and could potentially allow non-secure processors access to secure memorie…

CVSS 8.6 EPSS 0.18% Nov 23, 2025
CVE-2024-21923 HIGH

Incorrect default permissions in AMD StoreMI™ could allow an attacker to achieve privilege escalation potentially resulting in arbitrary code execution.

CVSS 7.3 EPSS 0.14% Nov 23, 2025
CVE-2024-21922 HIGH

A DLL hijacking vulnerability in AMD StoreMI™ could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution.

CVSS 7.3 EPSS 0.14% Nov 23, 2025
CVE-2025-48502 MEDIUM

Improper input validation within AMD uprof can allow a local attacker to overwrite MSR registers, potentially resulting in crash or denial of service.

CVSS 5.5 EPSS 0.11% Nov 21, 2025
CVE-2025-0038 MEDIUM

In AMD Zynq UltraScale+ devices, the lack of address validation when executing CSU runtime services through the PMU Firmware can allow access to isolated or pr…

CVSS 6.6 EPSS 0.13% Oct 6, 2025
CVE-2025-54520 HIGH

Improper Protection Against Voltage and Clock Glitches in FPGA devices, could allow an attacker with physical access to undervolt the platform resulting in a l…

CVSS 8.6 EPSS 0.20% Sep 24, 2025
CVE-2024-36348 LOW

A transient execution vulnerability in some AMD processors may allow a user process to infer the control registers speculatively even if UMIP feature is enable…

CVSS 3.8 EPSS 0.33% Jul 8, 2025
CVE-2024-36349 LOW

A transient execution vulnerability in some AMD processors may allow a user process to infer TSC_AUX even when such a read is disabled, potentially resulting i…

CVSS 3.8 EPSS 0.18% Jul 8, 2025
CVE-2025-0036 LOW

In AMD Versal Adaptive SoC devices, the incorrect configuration of the SSS during runtime (post-boot) cryptographic operations could cause data to be incorrect…

CVSS 3.2 EPSS 0.15% Jun 9, 2025
CVE-2025-0037 MEDIUM

In AMD Versal Adaptive SoC devices, the lack of address validation when executing PLM runtime services through the PLM firmware can allow access to isolated or…

CVSS 6.6 EPSS 0.16% Jun 9, 2025
CVE-2023-31359 HIGH

Incorrect default permissions in the AMD Manageability API could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code exe…

CVSS 7.8 EPSS 0.16% May 13, 2025
CVE-2023-31358 HIGH

A DLL hijacking vulnerability in the AMD Manageability API could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code exe…

CVSS 7.8 EPSS 0.16% May 13, 2025

Showing 1 to 25 CVEs · page 1 (more available)