7.8
CVE-2020-12981
- EPSS 0.05%
- Veröffentlicht 11.06.2021 22:15:11
- Zuletzt bearbeitet 21.11.2024 05:00:36
- Quelle psirt@amd.com
- CVE-Watchlists
- Unerledigt
An insufficient input validation in the AMD Graphics Driver for Windows 10 may allow unprivileged users to unload the driver, potentially causing memory corruptions in high privileged processes, which can lead to escalation of privileges or denial of service.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Amd ≫ Radeon Pro Software SwEditionenterprise Version < 21.q1
Amd ≫ Radeon Software Version < 20.7.1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.05% | 0.163 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
| nvd@nist.gov | 7.2 | 3.9 | 10 |
AV:L/AC:L/Au:N/C:C/I:C/A:C
|
CWE-787 Out-of-bounds Write
The product writes data past the end, or before the beginning, of the intended buffer.