← Back

Amd

amd

288 CVEs • 1,690 products

Products (1,690)

Click to collapse
Toggle

CVEs (288)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Amd
1Radeon Directx 11 Driver Atidxx64.dll
Jun 17, 2026
Jul 20, 2020
N/A· v4
9.9 CRITICAL· v3
6.5 MEDIUM· v2
An exploitable memory corruption vulnerability exists in AMD atidxx64.dll 26.20.15019.19000 graphics driver. A specially crafted pixel shader can cause memory corruption vulnerability. An attacker can provide a specially...Show more
An exploitable memory corruption vulnerability exists in AMD atidxx64.dll 26.20.15019.19000 graphics driver. A specially crafted pixel shader can cause memory corruption vulnerability. An attacker can provide a specially crafted shader file to trigger this vulnerability. This vulnerability potentially could be triggered from guest machines running virtualization environments (ie. VMware, qemu, VirtualBox etc.) in order to perform guest-to-host escape - as it was demonstrated before (TALOS-2018-0533, TALOS-2018-0568, etc.). Theoretically this vulnerability could be also triggered from web browser (using webGL and webassembly). This vulnerability was triggered from HYPER-V guest using RemoteFX feature leading to executing the vulnerable code on the HYPER-V host (inside of the rdvgm.exe process).Show less
1Amd
1Overdrive
Jun 17, 2026
May 18, 2020
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
An issue was discovered in AODDriver2.sys in AMD OverDrive. The vulnerable driver exposes a wrmsr instruction via IOCTL 0x81112ee0 and does not properly filter the Model Specific Register (MSR). Allowing arbitrary MSR wr...Show more
An issue was discovered in AODDriver2.sys in AMD OverDrive. The vulnerable driver exposes a wrmsr instruction via IOCTL 0x81112ee0 and does not properly filter the Model Specific Register (MSR). Allowing arbitrary MSR writes can lead to Ring-0 code execution and escalation of privileges.Show less
1Amd
1Atillk64
Jun 17, 2026
May 18, 2020
N/A· v4
6.7 MEDIUM· v3
4.6 MEDIUM· v2
An issue was discovered in atillk64.sys in AMD ATI Diagnostics Hardware Abstraction Sys/Overclocking Utility 5.11.9.0. The vulnerable driver exposes a wrmsr instruction and does not properly filter the Model Specific Reg...Show more
An issue was discovered in atillk64.sys in AMD ATI Diagnostics Hardware Abstraction Sys/Overclocking Utility 5.11.9.0. The vulnerable driver exposes a wrmsr instruction and does not properly filter the Model Specific Register (MSR). Allowing arbitrary MSR writes can lead to Ring-0 code execution and escalation of privileges.Show less
1Amd
1Atillk64
Jun 17, 2026
Apr 27, 2020
N/A· v4
8.8 HIGH· v3
9.0 HIGH· v2
AMD ATI atillk64.sys 5.11.9.0 allows low-privileged users to interact directly with physical memory by calling one of several driver routines that map physical memory into the virtual address space of the calling process...Show more
AMD ATI atillk64.sys 5.11.9.0 allows low-privileged users to interact directly with physical memory by calling one of several driver routines that map physical memory into the virtual address space of the calling process. This could enable low-privileged users to achieve NT AUTHORITY\SYSTEM privileges via a DeviceIoControl call associated with MmMapIoSpace, IoAllocateMdl, MmBuildMdlForNonPagedPool, or MmMapLockedPages.Show less
1Amd
1User Experience Program
Jun 17, 2026
Feb 12, 2020
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
The AUEPLauncher service in Radeon AMD User Experience Program Launcher through 1.0.0.1 on Windows allows elevation of privilege by placing a crafted file in %PROGRAMDATA%\AMD\PPC\upload and then creating a symbolic link...Show more
The AUEPLauncher service in Radeon AMD User Experience Program Launcher through 1.0.0.1 on Windows allows elevation of privilege by placing a crafted file in %PROGRAMDATA%\AMD\PPC\upload and then creating a symbolic link in %PROGRAMDATA%\AMD\PPC\temp that points to an arbitrary folder with an arbitrary file name.Show less
1Amd
1Atidxx64
Jun 17, 2026
Jan 25, 2020
N/A· v4
9.0 CRITICAL· v3
6.8 MEDIUM· v2
An exploitable type confusion vulnerability exists in AMD ATIDXX64.DLL driver, versions 26.20.13031.10003, 26.20.13031.15006 and 26.20.13031.18002. A specially crafted pixel shader can cause a type confusion issue, leadi...Show more
An exploitable type confusion vulnerability exists in AMD ATIDXX64.DLL driver, versions 26.20.13031.10003, 26.20.13031.15006 and 26.20.13031.18002. A specially crafted pixel shader can cause a type confusion issue, leading to potential code execution. An attacker can provide a specially crafted shader file to trigger this vulnerability. This vulnerability can be triggered from VMware guest, affecting VMware host.Show less
1Amd
1Atidxx64
Jun 17, 2026
Jan 25, 2020
N/A· v4
8.6 HIGH· v3
7.8 HIGH· v2
An exploitable out-of-bounds read vulnerability exists in AMD ATIDXX64.DLL driver, version 26.20.13003.1007. A specially crafted pixel shader can cause a denial of service. An attacker can provide a specially crafted sha...Show more
An exploitable out-of-bounds read vulnerability exists in AMD ATIDXX64.DLL driver, version 26.20.13003.1007. A specially crafted pixel shader can cause a denial of service. An attacker can provide a specially crafted shader file to trigger this vulnerability. This vulnerability can be triggered from VMware guest, affecting VMware host.Show less
1Amd
1Atidxx64
Jun 17, 2026
Jan 25, 2020
N/A· v4
8.6 HIGH· v3
7.8 HIGH· v2
An exploitable out-of-bounds read vulnerability exists in AMD ATIDXX64.DLL driver, version 26.20.13025.10004. A specially crafted pixel shader can cause a denial of service. An attacker can provide a specially crafted sh...Show more
An exploitable out-of-bounds read vulnerability exists in AMD ATIDXX64.DLL driver, version 26.20.13025.10004. A specially crafted pixel shader can cause a denial of service. An attacker can provide a specially crafted shader file to trigger this vulnerability. This vulnerability can be triggered from VMware guest, affecting VMware host.Show less
1Amd
1Atidxx64
Jun 17, 2026
Jan 25, 2020
N/A· v4
8.6 HIGH· v3
7.8 HIGH· v2
An exploitable out-of-bounds read vulnerability exists in AMD ATIDXX64.DLL driver, version 26.20.13001.50005. A specially crafted pixel shader can cause a denial of service. An attacker can provide a specially crafted sh...Show more
An exploitable out-of-bounds read vulnerability exists in AMD ATIDXX64.DLL driver, version 26.20.13001.50005. A specially crafted pixel shader can cause a denial of service. An attacker can provide a specially crafted shader file to trigger this vulnerability. This vulnerability can be triggered from VMware guest, affecting VMware host.Show less
2Amd
Vmware
3Radeon 550 Firmware
Radeon Rx 550 FirmwareWorkstation
Jun 17, 2026
Dec 5, 2019
N/A· v4
8.6 HIGH· v3
5.0 MEDIUM· v2
An exploitable out-of-bounds read vulnerability exists in AMD ATIDXX64.DLL driver, version 26.20.13001.29010. A specially crafted pixel shader can cause out-of-bounds memory read. An attacker can provide a specially craf...Show more
An exploitable out-of-bounds read vulnerability exists in AMD ATIDXX64.DLL driver, version 26.20.13001.29010. A specially crafted pixel shader can cause out-of-bounds memory read. An attacker can provide a specially crafted shader file to trigger this vulnerability. This vulnerability can be triggered from VMware guest, affecting VMware host.Show less
1Amd
3Radeon 550 Firmware
Radeon Rx 550 FirmwareRadeon Rx 550x Firmware
Jun 17, 2026
Oct 31, 2019
N/A· v4
10.0 CRITICAL· v3
7.5 HIGH· v2
An exploitable memory corruption vulnerability exists in AMD ATIDXX64.DLL driver, versions 25.20.15031.5004 and 25.20.15031.9002. A specially crafted pixel shader can cause an out-of-bounds memory write. An attacker can...Show more
An exploitable memory corruption vulnerability exists in AMD ATIDXX64.DLL driver, versions 25.20.15031.5004 and 25.20.15031.9002. A specially crafted pixel shader can cause an out-of-bounds memory write. An attacker can provide a specially crafted shader file to trigger this vulnerability. This vulnerability can be triggered from VMware guest, affecting VMware host.Show less
1Amd
41Zu11eg Firmware
Zu15eg FirmwareZu17eg Firmware+38 more
Jun 17, 2026
Sep 3, 2019
N/A· v4
5.5 MEDIUM· v3
2.1 LOW· v2
A weakness was found in Encrypt Only boot mode in Zynq UltraScale+ devices. This could lead to an adversary being able to modify the control fields of the boot image leading to an incorrect secure boot behavior.
2Amd
Opensuse
2Leap
Secure Encrypted Virtualization Firmware
Jun 17, 2026
Jun 25, 2019
N/A· v4
5.3 MEDIUM· v3
5.0 MEDIUM· v2
Secure Encrypted Virtualization (SEV) on Advanced Micro Devices (AMD) Platform Security Processor (PSP; aka AMD Secure Processor or AMD-SP) 0.17 build 11 and earlier has an insecure cryptographic implementation.
1Amd
4Epyc Server Firmware
Ryzen FirmwareRyzen Mobile Firmware+1 more
Jun 17, 2026
Mar 22, 2018
N/A· v4
9.0 CRITICAL· v3
9.3 HIGH· v2
The AMD EPYC Server, Ryzen, Ryzen Pro, and Ryzen Mobile processor chips allow Platform Security Processor (PSP) privilege escalation.
1Amd
2Ryzen Firmware
Ryzen Pro Firmware
Jun 17, 2026
Mar 22, 2018
N/A· v4
9.0 CRITICAL· v3
9.3 HIGH· v2
The Promontory chipset, as used in AMD Ryzen and Ryzen Pro platforms, has a backdoor in the ASIC, aka CHIMERA-HW.
1Amd
2Ryzen Firmware
Ryzen Pro Firmware
Jun 17, 2026
Mar 22, 2018
N/A· v4
9.0 CRITICAL· v3
9.3 HIGH· v2
The Promontory chipset, as used in AMD Ryzen and Ryzen Pro platforms, has a backdoor in firmware, aka CHIMERA-FW.
1Amd
1Epyc Server Firmware
Jun 17, 2026
Mar 22, 2018
N/A· v4
9.0 CRITICAL· v3
9.3 HIGH· v2
The AMD EPYC Server processor chips have insufficient access control for protected memory regions, aka FALLOUT-1, FALLOUT-2, and FALLOUT-3.
1Amd
2Ryzen Firmware
Ryzen Pro Firmware
Jun 17, 2026
Mar 22, 2018
N/A· v4
9.0 CRITICAL· v3
9.3 HIGH· v2
The AMD Ryzen and Ryzen Pro processor chips have insufficient access control for the Secure Processor, aka RYZENFALL-2, RYZENFALL-3, and RYZENFALL-4.
1Amd
3Ryzen Firmware
Ryzen Mobile FirmwareRyzen Pro Firmware
Jun 17, 2026
Mar 22, 2018
N/A· v4
9.0 CRITICAL· v3
9.3 HIGH· v2
The AMD Ryzen, Ryzen Pro, and Ryzen Mobile processor chips have insufficient access control for the Secure Processor, aka RYZENFALL-1.
1Amd
4Epyc Server Firmware
Ryzen FirmwareRyzen Mobile Firmware+1 more
Jun 17, 2026
Mar 22, 2018
N/A· v4
9.0 CRITICAL· v3
9.3 HIGH· v2
The AMD EPYC Server, Ryzen, Ryzen Pro, and Ryzen Mobile processor chips have insufficient enforcement of Hardware Validated Boot, aka MASTERKEY-1, MASTERKEY-2, and MASTERKEY-3.