Vulnerabilities > AMD > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-09-21 CVE-2021-26333 Missing Initialization of Resource vulnerability in AMD Chipset Driver and PSP Driver
An information disclosure vulnerability exists in AMD Platform Security Processor (PSP) chipset driver.
local
low complexity
amd CWE-909
5.5
2021-06-11 CVE-2020-12987 Information Exposure vulnerability in AMD Radeon PRO Software and Radeon Software
A heap information leak/kernel pool address disclosure vulnerability in the AMD Graphics Driver for Windows 10 may lead to KASLR bypass.
local
low complexity
amd CWE-200
5.5
2020-11-12 CVE-2020-12926 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in AMD Trusted Platform Modules Reference
The Trusted Platform Modules (TPM) reference software may not properly track the number of times a failed shutdown happens.
high complexity
amd CWE-367
6.4
2020-11-12 CVE-2020-12912 Information Exposure Through Discrepancy vulnerability in AMD Energy Driver for Linux
A potential vulnerability in the AMD extension to Linux "hwmon" service may allow an attacker to use the Linux-based Running Average Power Limit (RAPL) interface to show various side channel attacks.
local
low complexity
amd CWE-203
5.5
2020-10-13 CVE-2020-12933 Out-of-bounds Read vulnerability in AMD Atikmdag.Sys 26.20.15029.27017
A denial of service vulnerability exists in the D3DKMTEscape handler functionality of AMD ATIKMDAG.SYS (e.g.
local
low complexity
amd CWE-125
5.5
2020-10-13 CVE-2020-12911 Out-of-bounds Read vulnerability in AMD Atikmdag.Sys 26.20.15029.27017
A denial of service vulnerability exists in the D3DKMTCreateAllocation handler functionality of AMD ATIKMDAG.SYS (e.g.
local
low complexity
amd CWE-125
5.5
2020-05-18 CVE-2019-7246 Unspecified vulnerability in AMD Atillk64 5.11.9.0
An issue was discovered in atillk64.sys in AMD ATI Diagnostics Hardware Abstraction Sys/Overclocking Utility 5.11.9.0.
local
low complexity
amd
6.7
2019-09-03 CVE-2019-5478 Insufficient Verification of Data Authenticity vulnerability in AMD products
A weakness was found in Encrypt Only boot mode in Zynq UltraScale+ devices.
local
low complexity
amd CWE-345
5.5
2019-06-25 CVE-2019-9836 Use of a Broken or Risky Cryptographic Algorithm vulnerability in multiple products
Secure Encrypted Virtualization (SEV) on Advanced Micro Devices (AMD) Platform Security Processor (PSP; aka AMD Secure Processor or AMD-SP) 0.17 build 11 and earlier has an insecure cryptographic implementation.
network
low complexity
amd opensuse CWE-327
5.3
2017-03-25 CVE-2017-7262 Improper Input Validation vulnerability in AMD Ryzen 20170127
The AMD Ryzen processor with AGESA microcode through 2017-01-27 allows local users to cause a denial of service (system hang) via an application that makes a long series of FMA3 instructions, as demonstrated by the Flops test suite.
local
low complexity
amd CWE-20
5.5