7.8

CVE-2020-12981

An insufficient input validation in the AMD Graphics Driver for Windows 10 may allow unprivileged users to unload the driver, potentially causing memory corruptions in high privileged processes, which can lead to escalation of privileges or denial of service.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Amd ≫ Radeon Pro Software SwEdition enterprise Version < 21.q1
   Microsoft ≫ Windows 10 Version - HwPlatform x64
   Microsoft ≫ Windows 10 Version - HwPlatform x86
Amd ≫ Radeon Software Version < 20.7.1
   Microsoft ≫ Windows 10 Version - HwPlatform x64
   Microsoft ≫ Windows 10 Version - HwPlatform x86
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.28% 0.193
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
NIST 7.2 3.9 10
AV:L/AC:L/Au:N/C:C/I:C/A:C
CWE-787 Out-of-bounds Write

The product writes data past the end, or before the beginning, of the intended buffer.

https://www.amd.com/en/corporate/product-security/bulletin/amd-sb-1000