Skip to content
Noroxi

AMD records

302 published records for vendor amd.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
6
With a fix record
19.9%
Median publish → KEV
No record has entered KEV

All records

302 records
  • An exploitable memory corruption vulnerability exists in AMD ATIDXX64.DLL driver, versions 25.20.15031.5004 and 25.20.15031.9002.

    CriticalCVSS 10.0No exploitEPSS 2%

    amd · radeon rx 550 firmwareOct 31, 2019

  • An exploitable code execution vulnerability exists in the Shader functionality of AMD Radeon DirectX 11 Driver atidxx64.dll 26.20.15019.1900

    CriticalCVSS 9.9No exploitEPSS 3%

    amd · radeon directx 11 driver atidxx64.dllJul 20, 2020

  • An exploitable code execution vulnerability exists in the Shader functionality of AMD Radeon DirectX 11 Driver atidxx64.dll 26.20.15019.1900

    CriticalCVSS 9.9No exploitEPSS 3%

    amd · radeon directx 11 driver atidxx64.dllJul 20, 2020

  • An exploitable code execution vulnerability exists in the Shader functionality of AMD Radeon DirectX 11 Driver atidxx64.dll 26.20.15019.1900

    CriticalCVSS 9.9No exploitEPSS 3%

    amd · radeon directx 11 driver atidxx64.dllJul 20, 2020

  • An issue was discovered in AODDriver2.sys in AMD OverDrive.

    CriticalCVSS 9.8No exploitEPSS 2%

    amd · overdriveMay 18, 2020

  • An exploitable memory corruption vulnerability exists in AMD atidxx64.dll 26.20.15019.19000 graphics driver.

    CriticalCVSS 9.9No exploitEPSS 2%

    amd · radeon directx 11 driver atidxx64.dllJul 20, 2020

  • Improper re-initialization of IOMMU during the DRTM event may permit an untrusted platform configuration to persist, allowing an attacker to

    CriticalCVSS 10.0No exploitEPSS 0%

    amd · epyc 8024pn firmwareAug 13, 2024

  • AMD Chipset Driver Information Disclosure Vulnerability

    CriticalCVSS 9.9No exploitEPSS 1%

    amd · amd uprofDec 1, 2021

  • Improper input validation in the SMM Supervisor may allow an attacker with a compromised SMI handler to gain Ring0 access potentially leadin

    CriticalCVSS 9.8No exploitEPSS 1%

    amd · ryzen 7 5700g firmwareNov 14, 2023

  • Radeon™ Software Crimson ReLive Edition

    CriticalCVSS 9.8No exploitEPSS 1%

    amd · radeon softwareAug 8, 2023

  • Improper access control in System Management Mode (SMM) may allow an attacker to write to SPI ROM potentially leading to arbitrary code exec

    CriticalCVSS 9.8No exploitEPSS 1%

    amd · ryzen 9 3900 firmwareNov 14, 2023

  • Improper access control settings in ASP Bootloader may allow an attacker to corrupt the return address causing a stack-based buffer overrun

    CriticalCVSS 9.8No exploitEPSS 1%

    amd · epyc 72f3 firmwareMay 9, 2023

  • A malicious or compromised UApp or ABL can send a malformed system call to the bootloader, which may result in an out-of-bounds memory acces

    CriticalCVSS 9.8No exploitEPSS 1%

    amd · ryzen 3945wx firmwareMay 9, 2023

  • Failure to validate the AMD SMM communication buffer may allow an attacker to corrupt the SMRAM potentially leading to arbitrary code execut

    CriticalCVSS 9.8No exploitEPSS 1%

    amd · ryzen 9 3900 firmwareNov 14, 2023

  • Insufficient input validation of mailbox data in the SMU may allow an attacker to coerce the SMU to corrupt SMRAM, potentially leading to a

    CriticalCVSS 9.8No exploitEPSS 1%

    amd · epyc 72f3 firmwareMay 9, 2023

  • A stack buffer overflow vulnerability discovered in AsfSecureBootDxe in Insyde InsydeH2O with kernel 5.0 through 5.5 allows attackers to run

    CriticalCVSS 9.8No exploitEPSS 0%

    insyde · insydeh2oNov 1, 2023

  • CVE-2019-5183
    37Monitor

    An exploitable type confusion vulnerability exists in AMD ATIDXX64.DLL driver, versions 26.20.13031.10003, 26.20.13031.15006 and 26.20.13031

    CriticalCVSS 9.0No exploitEPSS 2%

    amd · atidxx64Jan 25, 2020

  • CVE-2018-8930
    37Monitor

    The AMD EPYC Server, Ryzen, Ryzen Pro, and Ryzen Mobile processor chips have insufficient enforcement of Hardware Validated Boot, aka MASTER

    CriticalCVSS 9.0No exploitEPSS 2%

    amd · ryzen mobile firmwareMar 22, 2018

  • CVE-2018-8936
    37Monitor

    The AMD EPYC Server, Ryzen, Ryzen Pro, and Ryzen Mobile processor chips allow Platform Security Processor (PSP) privilege escalation.

    CriticalCVSS 9.0No exploitEPSS 2%

    amd · ryzen mobile firmwareMar 22, 2018

  • CVE-2018-8935
    37Monitor

    The Promontory chipset, as used in AMD Ryzen and Ryzen Pro platforms, has a backdoor in the ASIC, aka CHIMERA-HW.

    CriticalCVSS 9.0No exploitEPSS 2%

    amd · ryzen pro firmwareMar 22, 2018

  • CVE-2018-8934
    37Monitor

    The Promontory chipset, as used in AMD Ryzen and Ryzen Pro platforms, has a backdoor in firmware, aka CHIMERA-FW.

    CriticalCVSS 9.0No exploitEPSS 2%

    amd · ryzen pro firmwareMar 22, 2018

  • AMD ATI atillk64.sys 5.11.9.0 allows low-privileged users to interact directly with physical memory by calling one of several driver routine

    HighCVSS 8.8No exploitEPSS 3%

    amd · atillk64Apr 27, 2020

  • CVE-2018-8932
    36Monitor

    The AMD Ryzen and Ryzen Pro processor chips have insufficient access control for the Secure Processor, aka RYZENFALL-2, RYZENFALL-3, and RYZ

    CriticalCVSS 9.0No exploitEPSS 2%

    amd · ryzen pro firmwareMar 22, 2018

  • CVE-2018-8931
    36Monitor

    The AMD Ryzen, Ryzen Pro, and Ryzen Mobile processor chips have insufficient access control for the Secure Processor, aka RYZENFALL-1.

    CriticalCVSS 9.0No exploitEPSS 2%

    amd · ryzen mobile firmwareMar 22, 2018

  • CVE-2018-8933
    36Monitor

    The AMD EPYC Server processor chips have insufficient access control for protected memory regions, aka FALLOUT-1, FALLOUT-2, and FALLOUT-3.

    CriticalCVSS 9.0No exploitEPSS 2%

    amd · epyc server firmwareMar 22, 2018