Amd

Instinct Mi300a

20 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.2%
  • Veröffentlicht 15.05.2026 03:04:56
  • Zuletzt bearbeitet 15.05.2026 14:10:17

Unrestricted IP address binding in the AMD Device Metrics Exporter (ROCm ecosystem) could allow a remote attacker to perform unauthorized changes to the GPU configuration, potentially resulting in loss of availability

  • EPSS 0.01%
  • Veröffentlicht 15.05.2026 03:00:25
  • Zuletzt bearbeitet 15.05.2026 14:10:17

An out of bounds read in the remote management firmware could allow a privileged attacker read a limited section of memory outside of established bounds potentially resulting in loss of confidentiality or availability.

  • EPSS 0.01%
  • Veröffentlicht 15.05.2026 02:59:46
  • Zuletzt bearbeitet 15.05.2026 14:10:17

A race condition in the MxGPU-Virtualization driver’s ioctl path caused by concurrent unsynchronized access to the global variable amdgv_cmd in an unlocked ioctl handler could be exploited by an attacker to trigger a heap-based buffer overflow, poten...

  • EPSS 0.01%
  • Veröffentlicht 15.05.2026 02:59:08
  • Zuletzt bearbeitet 15.05.2026 14:10:17

Improper isolation of VCN-JPEG HW register space could allow a malicious Guest Virtual Machine (VM) or a process to perform unauthorized access to the register space of the JPEG cores assigned a victim VM/process, potentially gaining arbitrary read/w...

  • EPSS 0.04%
  • Veröffentlicht 15.05.2026 02:44:54
  • Zuletzt bearbeitet 15.05.2026 14:10:17

Out of bounds write in AMD AMDGV_CMD_GET_DIAG_DATA ioctl handler could allow a local user to escalate privileges via remote code execution.

  • EPSS 0.03%
  • Veröffentlicht 15.05.2026 02:42:33
  • Zuletzt bearbeitet 15.05.2026 14:10:17

Insufficient parameter sanitization in TEE SOC Driver could allow an attacker to issue a malformed DRV_SOC_CMD_ID_SRIOV_CHECK_TA_COMPAT to cause incorrect shared memory mapping, potentially resulting in unexpected behavior.

  • EPSS 0.01%
  • Veröffentlicht 15.05.2026 02:41:56
  • Zuletzt bearbeitet 15.05.2026 14:10:17

Insufficient parameter sanitization in AMD Secure Processor (ASP) TEE SOC Driver could allow an attacker to issue a malformed DRV_SOC_CMD_ID_LOAD_GFX_IP_FW SR-IOV command to cause out-of-bounds read, potentially resulting in SOC Driver memory content...

  • EPSS 0.03%
  • Veröffentlicht 15.05.2026 02:41:13
  • Zuletzt bearbeitet 15.05.2026 14:10:17

Insufficient parameter sanitization in TEE SOC Driver could allow an attacker to issue a malformed DRV_SOC_CMD_ID_SRIOV_COPY_VF_CHIPLET_REGS to write invalid data to a remote Die, potentially resulting in unexpected behavior.

  • EPSS 0.02%
  • Veröffentlicht 12.02.2026 17:45:12
  • Zuletzt bearbeitet 15.04.2026 00:35:42

Type confusion in the AMD Secure Processor (ASP) could allow an attacker to pass a malformed argument to the External Global Memory Interconnect Trusted Agent (XGMI TA) leading to a memory safety violation potentially resulting in loss of confidentia...

  • EPSS 0.01%
  • Veröffentlicht 12.02.2026 17:41:06
  • Zuletzt bearbeitet 15.04.2026 00:35:42

Debug code left active in AMD's Video Decoder Engine Firmware (VCN FW) could allow a attacker to submit a maliciously crafted command causing the VCN FW to perform read/writes HW registers, potentially impacting confidentiality, integrity and availab...