Vulnerabilities > AMD

DATE CVE VULNERABILITY TITLE RISK
2021-11-16 CVE-2021-26337 Unspecified vulnerability in AMD products
Insufficient DRAM address validation in System Management Unit (SMU) may result in a DMA read from invalid DRAM address to SRAM resulting in SMU not servicing further requests.
local
low complexity
amd
5.5
2021-11-16 CVE-2021-26312 Exposure of Resource to Wrong Sphere vulnerability in AMD products
Failure to flush the Translation Lookaside Buffer (TLB) of the I/O memory management unit (IOMMU) may lead an IO device to write to memory it should not be able to access, resulting in a potential loss of integrity.
local
low complexity
amd CWE-668
5.5
2021-11-16 CVE-2021-26322 Use of Insufficiently Random Values vulnerability in AMD products
Persistent platform private key may not be protected with a random IV leading to a potential “two time pad attack”.
network
low complexity
amd CWE-330
7.5
2021-11-16 CVE-2021-26326 Improper Initialization vulnerability in AMD products
Failure to validate VM_HSAVE_PA during SNP_INIT may result in a loss of memory integrity.
local
low complexity
amd CWE-665
7.8
2021-11-16 CVE-2021-26329 Integer Overflow or Wraparound vulnerability in AMD products
AMD System Management Unit (SMU) may experience an integer overflow when an invalid length is provided which may result in a potential loss of resources.
local
low complexity
amd CWE-190
5.5
2021-11-16 CVE-2021-26338 Unspecified vulnerability in AMD products
Improper access controls in System Management Unit (SMU) may allow for an attacker to override performance control tables located in DRAM resulting in a potential lack of system resources.
network
low complexity
amd
7.5
2021-11-15 CVE-2020-12893 Out-of-bounds Write vulnerability in AMD Radeon Software 20.7.1
Stack Buffer Overflow in AMD Graphics Driver for Windows 10 in Escape 0x15002a may lead to escalation of privilege or denial of service.
local
low complexity
amd CWE-787
7.8
2021-11-15 CVE-2020-12894 Out-of-bounds Write vulnerability in AMD Radeon Software
Arbitrary Write in AMD Graphics Driver for Windows 10 in Escape 0x40010d may lead to arbitrary write to kernel memory or denial of service.
local
low complexity
amd CWE-787
7.1
2021-11-15 CVE-2020-12901 Use After Free vulnerability in AMD Radeon Software
Arbitrary Free After Use in AMD Graphics Driver for Windows 10 may lead to KASLR bypass or information disclosure.
local
low complexity
amd CWE-416
5.5
2021-11-15 CVE-2020-12903 Out-of-bounds Write vulnerability in AMD Radeon Software 20.7.1
Out of Bounds Write and Read in AMD Graphics Driver for Windows 10 in Escape 0x6002d03 may lead to escalation of privilege or denial of service.
local
low complexity
amd CWE-787
7.8