VYPR

Amd Uprof

by AMD

CVEs (6)

  • CVE-2021-26334CriDec 1, 2021
    risk 0.64cvss 9.9epss 0.01

    The AMDPowerProfiler.sys driver of AMD μProf tool may allow lower privileged users to access MSRs in kernel which may lead to privilege escalation and ring-0 code execution by the lower privileged user.

  • CVE-2023-20562HigAug 8, 2023
    risk 0.51cvss 7.8epss 0.01

    Insufficient validation in the IOCTL (Input Output Control) input buffer in AMD uProf may allow an authenticated user to load an unsigned driver potentially leading to arbitrary kernel execution.

  • CVE-2022-27674HigNov 9, 2022
    risk 0.49cvss 7.5epss 0.01

    Insufficient validation in the IOCTL input/output buffer in AMD μProf may allow an attacker to bypass bounds checks potentially leading to a Windows kernel crash resulting in denial of service.

  • CVE-2022-23831HigNov 9, 2022
    risk 0.49cvss 7.5epss 0.01

    Insufficient validation of the IOCTL input buffer in AMD μProf may allow an attacker to send an arbitrary buffer leading to a potential Windows kernel crash resulting in denial of service.

  • CVE-2023-20561MedAug 8, 2023
    risk 0.36cvss 5.5epss 0.00

    Insufficient validation of the IOCTL (Input Output Control) input buffer in AMD μProf may allow an authenticated user to send an arbitrary address potentially resulting in a Windows crash leading to denial of service.

  • CVE-2023-20556MedAug 8, 2023
    risk 0.36cvss 5.5epss 0.00

    Insufficient validation of the IOCTL (Input Output Control) input buffer in AMD μProf may allow an authenticated user to send an arbitrary buffer potentially resulting in a Windows crash leading to denial of service.