Radeon Software
by AMD
CVEs (52)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2020-12902 | Hig | 0.51 | 7.8 | 0.00 | Nov 15, 2021 | Arbitrary Decrement Privilege Escalation in AMD Graphics Driver for Windows 10 may lead to escalation of privilege or denial of service. | ||
| CVE-2020-12900 | Hig | 0.51 | 7.8 | 0.00 | Nov 15, 2021 | An arbitrary write vulnerability in the AMD Radeon Graphics Driver for Windows 10 potentially allows unprivileged users to gain Escalation of Privileges and cause Denial of Service. | ||
| CVE-2020-12895 | Hig | 0.51 | 7.8 | 0.00 | Nov 15, 2021 | Pool/Heap Overflow in AMD Graphics Driver for Windows 10 in Escape 0x110037 may lead to escalation of privilege, information disclosure or denial of service. | ||
| CVE-2020-12964 | Hig | 0.51 | 7.8 | 0.00 | Nov 15, 2021 | A potential privilege escalation/denial of service issue exists in the AMD Radeon Kernel Mode driver Escape 0x2000c00 Call handler. An attacker with low privilege could potentially induce a Windows BugCheck or write to leak information. | ||
| CVE-2020-12986 | Hig | 0.51 | 7.8 | 0.00 | Jun 11, 2021 | An insufficient pointer validation vulnerability in the AMD Graphics Driver for Windows 10 may cause arbitrary code execution in the kernel, leading to escalation of privilege or denial of service. | ||
| CVE-2020-12985 | Hig | 0.51 | 7.8 | 0.00 | Jun 11, 2021 | An insufficient pointer validation vulnerability in the AMD Graphics Driver for Windows 10 may lead to escalation of privilege or denial of service. | ||
| CVE-2020-12983 | Hig | 0.51 | 7.8 | 0.00 | Jun 11, 2021 | An out of bounds write vulnerability in the AMD Graphics Driver for Windows 10 may lead to escalation of privileges or denial of service. | ||
| CVE-2020-12982 | Hig | 0.51 | 7.8 | 0.00 | Jun 11, 2021 | An invalid object pointer free vulnerability in the AMD Graphics Driver for Windows 10 may lead to escalation of privilege or denial of service. | ||
| CVE-2020-12981 | Hig | 0.51 | 7.8 | 0.00 | Jun 11, 2021 | An insufficient input validation in the AMD Graphics Driver for Windows 10 may allow unprivileged users to unload the driver, potentially causing memory corruptions in high privileged processes, which can lead to escalation of privileges or denial of service. | ||
| CVE-2020-12980 | Hig | 0.51 | 7.8 | 0.00 | Jun 11, 2021 | An out of bounds write and read vulnerability in the AMD Graphics Driver for Windows 10 may lead to escalation of privilege or denial of service. | ||
| CVE-2023-31320 | Hig | 0.49 | 7.5 | 0.01 | Nov 14, 2023 | Improper input validation in the AMD RadeonTM Graphics display driver may allow an attacker to corrupt the display potentially resulting in denial of service. | ||
| CVE-2024-21937 | Hig | 0.47 | 7.3 | 0.00 | Nov 12, 2024 | Incorrect default permissions in the AMD HIP SDK installation directory could allow an attacker to achieve privilege escalation potentially resulting in arbitrary code execution. | ||
| CVE-2021-26366 | Hig | 0.46 | 7.1 | 0.00 | May 12, 2022 | An attacker, who gained elevated privileges via some other vulnerability, may be able to read data from Boot ROM resulting in a loss of system integrity. | ||
| CVE-2021-26362 | Hig | 0.46 | 7.1 | 0.00 | May 12, 2022 | A malicious or compromised UApp or ABL may be used by an attacker to issue a malformed system call which results in mapping sensitive System Management Network (SMN) registers leading to a loss of integrity and availability. | ||
| CVE-2020-12894 | Hig | 0.46 | 7.1 | 0.00 | Nov 15, 2021 | Arbitrary Write in AMD Graphics Driver for Windows 10 in Escape 0x40010d may lead to arbitrary write to kernel memory or denial of service. | ||
| CVE-2020-12899 | Hig | 0.46 | 7.1 | 0.00 | Nov 15, 2021 | Arbitrary Read in AMD Graphics Driver for Windows 10 may lead to KASLR bypass or denial of service. | ||
| CVE-2023-20568 | Med | 0.44 | 6.7 | 0.00 | Nov 14, 2023 | Improper signature verification of RadeonTM RX Vega M Graphics driver for Windows may allow an attacker with admin privileges to launch RadeonInstaller.exe without validating the file signature potentially leading to arbitrary code execution. | ||
| CVE-2023-20567 | Med | 0.44 | 6.7 | 0.00 | Nov 14, 2023 | Improper signature verification of RadeonTM RX Vega M Graphics driver for Windows may allow an attacker with admin privileges to launch AMDSoftwareInstaller.exe without validating the file signature potentially leading to arbitrary code execution. | ||
| CVE-2021-26367 | Med | 0.37 | 5.7 | 0.00 | Aug 13, 2024 | A malicious attacker in x86 can misconfigure the Trusted Memory Regions (TMRs), which may allow the attacker to set an arbitrary address range for the TMR, potentially leading to a loss of integrity and availability. | ||
| CVE-2021-46748 | Med | 0.36 | 5.5 | 0.00 | Nov 14, 2023 | Insufficient bounds checking in the ASP (AMD Secure Processor) may allow an attacker to access memory outside the bounds of what is permissible to a TA (Trusted Application) resulting in a potential denial of service. |
- risk 0.51cvss 7.8epss 0.00
Arbitrary Decrement Privilege Escalation in AMD Graphics Driver for Windows 10 may lead to escalation of privilege or denial of service.
- risk 0.51cvss 7.8epss 0.00
An arbitrary write vulnerability in the AMD Radeon Graphics Driver for Windows 10 potentially allows unprivileged users to gain Escalation of Privileges and cause Denial of Service.
- risk 0.51cvss 7.8epss 0.00
Pool/Heap Overflow in AMD Graphics Driver for Windows 10 in Escape 0x110037 may lead to escalation of privilege, information disclosure or denial of service.
- risk 0.51cvss 7.8epss 0.00
A potential privilege escalation/denial of service issue exists in the AMD Radeon Kernel Mode driver Escape 0x2000c00 Call handler. An attacker with low privilege could potentially induce a Windows BugCheck or write to leak information.
- risk 0.51cvss 7.8epss 0.00
An insufficient pointer validation vulnerability in the AMD Graphics Driver for Windows 10 may cause arbitrary code execution in the kernel, leading to escalation of privilege or denial of service.
- risk 0.51cvss 7.8epss 0.00
An insufficient pointer validation vulnerability in the AMD Graphics Driver for Windows 10 may lead to escalation of privilege or denial of service.
- risk 0.51cvss 7.8epss 0.00
An out of bounds write vulnerability in the AMD Graphics Driver for Windows 10 may lead to escalation of privileges or denial of service.
- risk 0.51cvss 7.8epss 0.00
An invalid object pointer free vulnerability in the AMD Graphics Driver for Windows 10 may lead to escalation of privilege or denial of service.
- risk 0.51cvss 7.8epss 0.00
An insufficient input validation in the AMD Graphics Driver for Windows 10 may allow unprivileged users to unload the driver, potentially causing memory corruptions in high privileged processes, which can lead to escalation of privileges or denial of service.
- risk 0.51cvss 7.8epss 0.00
An out of bounds write and read vulnerability in the AMD Graphics Driver for Windows 10 may lead to escalation of privilege or denial of service.
- risk 0.49cvss 7.5epss 0.01
Improper input validation in the AMD RadeonTM Graphics display driver may allow an attacker to corrupt the display potentially resulting in denial of service.
- risk 0.47cvss 7.3epss 0.00
Incorrect default permissions in the AMD HIP SDK installation directory could allow an attacker to achieve privilege escalation potentially resulting in arbitrary code execution.
- risk 0.46cvss 7.1epss 0.00
An attacker, who gained elevated privileges via some other vulnerability, may be able to read data from Boot ROM resulting in a loss of system integrity.
- risk 0.46cvss 7.1epss 0.00
A malicious or compromised UApp or ABL may be used by an attacker to issue a malformed system call which results in mapping sensitive System Management Network (SMN) registers leading to a loss of integrity and availability.
- risk 0.46cvss 7.1epss 0.00
Arbitrary Write in AMD Graphics Driver for Windows 10 in Escape 0x40010d may lead to arbitrary write to kernel memory or denial of service.
- risk 0.46cvss 7.1epss 0.00
Arbitrary Read in AMD Graphics Driver for Windows 10 may lead to KASLR bypass or denial of service.
- risk 0.44cvss 6.7epss 0.00
Improper signature verification of RadeonTM RX Vega M Graphics driver for Windows may allow an attacker with admin privileges to launch RadeonInstaller.exe without validating the file signature potentially leading to arbitrary code execution.
- risk 0.44cvss 6.7epss 0.00
Improper signature verification of RadeonTM RX Vega M Graphics driver for Windows may allow an attacker with admin privileges to launch AMDSoftwareInstaller.exe without validating the file signature potentially leading to arbitrary code execution.
- risk 0.37cvss 5.7epss 0.00
A malicious attacker in x86 can misconfigure the Trusted Memory Regions (TMRs), which may allow the attacker to set an arbitrary address range for the TMR, potentially leading to a loss of integrity and availability.
- risk 0.36cvss 5.5epss 0.00
Insufficient bounds checking in the ASP (AMD Secure Processor) may allow an attacker to access memory outside the bounds of what is permissible to a TA (Trusted Application) resulting in a potential denial of service.
Page 2 of 3