← Back

Amd

amd

288 CVEs • 1,690 products

Products (1,690)

Click to collapse
Toggle

CVEs (288)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Amd
62Epyc 7203 Firmware
Epyc 7203p FirmwareEpyc 72f3 Firmware+59 more
Jun 17, 2026
Feb 13, 2024
N/A· v4
6.0 MEDIUM· v3
N/A· v2
Failure to initialize memory in SEV Firmware may allow a privileged attacker to access stale data from other guests.
1Amd
129Ryzen 3 3200u Firmware
Ryzen 3 3250c FirmwareRyzen 3 3250u Firmware+126 more
Jun 17, 2026
Feb 13, 2024
N/A· v4
6.0 MEDIUM· v3
N/A· v2
Improper Access Control in the AMD SPI protection feature may allow a user with Ring0 (kernel mode) privileged access to bypass protections potentially resulting in loss of integrity and availability....Show more
Improper Access Control in the AMD SPI protection feature may allow a user with Ring0 (kernel mode) privileged access to bypass protections potentially resulting in loss of integrity and availability. Show less
1Amd
10Ryzen Embedded 5600e Firmware
Ryzen Embedded 5800e FirmwareRyzen Embedded 5900e Firmware+7 more
Jun 17, 2026
Feb 13, 2024
N/A· v4
7.8 HIGH· v3
N/A· v2
Insufficient checking of memory buffer in ASP Secure OS may allow an attacker with a malicious TA to read/write to the ASP Secure OS kernel virtual address space potentially leading to privilege escalation.
1Amd
47Alveo U200 Firmware
Alveo U250 FirmwareAlveo U280 Firmware+44 more
Jun 17, 2026
Feb 13, 2024
N/A· v4
3.3 LOW· v3
N/A· v2
Insufficient verification of data authenticity in the configuration state machine may allow a local attacker to potentially load arbitrary bitstreams.
3Amd
ImaginationtechKhronos
132Athlon 3000g Firmware
DdkInstinct Mi100 Firmware+129 more
Jun 17, 2026
Jan 16, 2024
N/A· v4
6.5 MEDIUM· v3
N/A· v2
A GPU kernel can read sensitive data from another GPU kernel (even from another user or app) through an optimized GPU memory region called _local memory_ on various architectures.
1Amd
65Epyc 7203 Firmware
Epyc 7203p FirmwareEpyc 72f3 Firmware+62 more
Jun 17, 2026
Jan 11, 2024
N/A· v4
3.2 LOW· v3
N/A· v2
A privileged attacker can prevent delivery of debug exceptions to SEV-SNP guests potentially resulting in guests not receiving expected debug information.
1Amd
5Radeon Pro Vega 56 Firmware
Radeon Pro Vega 64 FirmwareRadeon Rx Vega 56 Firmware+2 more
Jun 17, 2026
Nov 14, 2023
N/A· v4
7.5 HIGH· v3
N/A· v2
Improper input validation in the AMD RadeonTM Graphics display driver may allow an attacker to corrupt the display potentially resulting in denial of service.
1Amd
64Ryzen 3 5125c Firmware
Ryzen 3 5300g FirmwareRyzen 3 5300ge Firmware+61 more
Jun 17, 2026
Nov 14, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Improper input validation in the SMM Supervisor may allow an attacker with a compromised SMI handler to gain Ring0 access potentially leading to arbitrary code execution.
1Amd
69Epyc 7001 Firmware
Epyc 7203 FirmwareEpyc 7203p Firmware+66 more
Jun 17, 2026
Nov 14, 2023
N/A· v4
6.5 MEDIUM· v3
N/A· v2
Improper or unexpected behavior of the INVD instruction in some AMD CPUs may allow an attacker with a malicious hypervisor to affect cache line write-back behavior of the CPU leading to a potential loss of guest virtual...Show more
Improper or unexpected behavior of the INVD instruction in some AMD CPUs may allow an attacker with a malicious hypervisor to affect cache line write-back behavior of the CPU leading to a potential loss of guest virtual machine (VM) memory integrity. Show less
1Amd
71Ryzen 3 5100 Firmware
Ryzen 3 5125c FirmwareRyzen 3 5300g Firmware+68 more
Jun 17, 2026
Nov 14, 2023
N/A· v4
8.1 HIGH· v3
N/A· v2
A race condition in System Management Mode (SMM) code may allow an attacker using a compromised user space to leverage CVE-2018-8897 potentially resulting in privilege escalation.
2Amd
Intel
6Radeon Pro Vega 56 Firmware
Radeon Pro Vega 64 FirmwareRadeon Rx Vega 56 Firmware+3 more
Jun 17, 2026
Nov 14, 2023
N/A· v4
6.7 MEDIUM· v3
N/A· v2
Improper signature verification of RadeonTM RX Vega M Graphics driver for Windows may allow an attacker with admin privileges to launch RadeonInstaller.exe without validating the file signature potentially leading to arb...Show more
Improper signature verification of RadeonTM RX Vega M Graphics driver for Windows may allow an attacker with admin privileges to launch RadeonInstaller.exe without validating the file signature potentially leading to arbitrary code execution.Show less
2Amd
Intel
6Radeon Pro Vega 56 Firmware
Radeon Pro Vega 64 FirmwareRadeon Rx Vega 56 Firmware+3 more
Jun 17, 2026
Nov 14, 2023
N/A· v4
6.7 MEDIUM· v3
N/A· v2
Improper signature verification of RadeonTM RX Vega M Graphics driver for Windows may allow an attacker with admin privileges to launch AMDSoftwareInstaller.exe without validating the file signature potentially leading t...Show more
Improper signature verification of RadeonTM RX Vega M Graphics driver for Windows may allow an attacker with admin privileges to launch AMDSoftwareInstaller.exe without validating the file signature potentially leading to arbitrary code execution.Show less
1Amd
65Epyc 7203 Firmware
Epyc 7203p FirmwareEpyc 72f3 Firmware+62 more
Jun 17, 2026
Nov 14, 2023
N/A· v4
7.5 HIGH· v3
N/A· v2
Improper address validation in ASP with SNP enabled may potentially allow an attacker to compromise guest memory integrity.
1Amd
71Ryzen 3 5100 Firmware
Ryzen 3 5125c FirmwareRyzen 3 5300g Firmware+68 more
Jun 17, 2026
Nov 14, 2023
N/A· v4
7.8 HIGH· v3
N/A· v2
Insufficient protections in System Management Mode (SMM) code may allow an attacker to potentially enable escalation of privilege via local access.
1Amd
71Ryzen 3 5100 Firmware
Ryzen 3 5125c FirmwareRyzen 3 5300g Firmware+68 more
Jun 17, 2026
Nov 14, 2023
N/A· v4
7.8 HIGH· v3
N/A· v2
Insufficient protections in System Management Mode (SMM) code may allow an attacker to potentially enable escalation of privilege via local access.
1Amd
85Epyc 7203 Firmware
Epyc 7203p FirmwareEpyc 7232p Firmware+82 more
Jun 17, 2026
Nov 14, 2023
N/A· v4
7.5 HIGH· v3
N/A· v2
Insufficient DRAM address validation in System Management Unit (SMU) may allow an attacker to read/write from/to an invalid DRAM address, potentially resulting in denial-of-service.
1Amd
73Epyc 7001 Firmware
Epyc 7203 FirmwareEpyc 7203p Firmware+70 more
Jun 17, 2026
Nov 14, 2023
N/A· v4
4.6 MEDIUM· v3
N/A· v2
Insufficient input validation in the ASP Bootloader may enable a privileged attacker with physical access to expose the contents of ASP memory potentially leading to a loss of confidentiality.
1Amd
93Amd 3015ce Firmware
Amd 3015e FirmwareAthlon Gold 3150g Firmware+90 more
Jun 17, 2026
Nov 14, 2023
N/A· v4
5.7 MEDIUM· v3
N/A· v2
TOCTOU in the ASP Bootloader may allow an attacker with physical access to tamper with SPI ROM records after memory content verification, potentially leading to loss of confidentiality or a denial of service.
1Amd
2Genoapi Firmware
Milanpi Firmware
Jun 17, 2026
Nov 14, 2023
N/A· v4
3.3 LOW· v3
N/A· v2
A Use-After-Free vulnerability in the management of an SNP guest context page may allow a malicious hypervisor to masquerade as the guest's migration agent resulting in a potential loss of guest integrity.
1Amd
65Epyc 7203 Firmware
Epyc 7203p FirmwareEpyc 72f3 Firmware+62 more
Jun 17, 2026
Nov 14, 2023
N/A· v4
5.3 MEDIUM· v3
N/A· v2
SMM configuration may not be immutable, as intended, when SNP is enabled resulting in a potential limited loss of guest memory integrity.