6.4
CVE-2023-20511
- EPSS 0.23%
- Veröffentlicht 31.08.2026 18:15:06
- Zuletzt bearbeitet 03.09.2026 16:37:52
- Erkennungen
Release of an invalid pointer in the AMD kernel mode driver (KMD) could allow a privileged attacker to create a double free condition potentially leading to arbitrary code execution.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerAMD
≫
Produkt
AMD Radeon™ Instinct™ MI25 Graphics Products
Default Statusaffected
Version
Contact your AMD Customer Engineering representative
Status
unaffected
HerstellerAMD
≫
Produkt
AMD Radeon™ PRO V620 Graphics Products
Default Statusaffected
Version
Contact your AMD Customer Engineering representative
Status
unaffected
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.23% | 0.14 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| AMD | 6.4 | 0.5 | 5.9 |
CVSS:3.0/AV:N/AC:H/PR:H/UI:R/S:U/C:H/I:H/A:H
|
CWE-763 Release of Invalid Pointer or Reference
The product attempts to return a memory resource to the system, but it calls the wrong release function or calls the appropriate release function incorrectly.
https://www.amd.com/en/resources/product-security/bulletin/AMD-SB-6018.html