CVE-2025-29933
- EPSS 0.01%
- Veröffentlicht 24.11.2025 21:03:48
- Zuletzt bearbeitet 26.11.2025 18:49:47
Improper input validation within AMD uProf can allow a local attacker to write out of bounds, potentially resulting in a crash or denial of service
CVE-2025-48511
- EPSS 0.02%
- Veröffentlicht 24.11.2025 21:00:32
- Zuletzt bearbeitet 26.11.2025 18:45:48
Improper input validation within AMD uprof can allow a local attacker to write to an arbitrary physical address, potentially resulting in crash or denial of service.
CVE-2025-48510
- EPSS 0.02%
- Veröffentlicht 24.11.2025 20:56:39
- Zuletzt bearbeitet 26.11.2025 18:47:42
Improper return value within AMD uProf can allow a local attacker to bypass KSLR, potentially resulting in loss of confidentiality or availability.
CVE-2025-48502
- EPSS 0.02%
- Veröffentlicht 21.11.2025 19:15:50
- Zuletzt bearbeitet 26.11.2025 18:48:29
Improper input validation within AMD uprof can allow a local attacker to overwrite MSR registers, potentially resulting in crash or denial of service.
CVE-2024-36340
- EPSS 0.01%
- Veröffentlicht 13.05.2025 14:15:19
- Zuletzt bearbeitet 26.11.2025 18:52:35
A junction point vulnerability within AMD uProf can allow a local low-privileged attacker to create junction points, potentially resulting in arbitrary file deletion or disclosure.
CVE-2023-31341
- EPSS 0.07%
- Veröffentlicht 13.08.2024 17:15:21
- Zuletzt bearbeitet 26.02.2025 07:14:52
Insufficient validation of the Input Output Control (IOCTL) input buffer in AMD μProf may allow an authenticated attacker to cause an out-of-bounds write, potentially causing a Windows® OS crash, resulting in denial of service.
CVE-2023-31348
- EPSS 0.17%
- Veröffentlicht 13.08.2024 17:15:21
- Zuletzt bearbeitet 12.12.2024 01:21:40
A DLL hijacking vulnerability in AMD μProf could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution.
CVE-2023-31349
- EPSS 0.16%
- Veröffentlicht 13.08.2024 17:15:21
- Zuletzt bearbeitet 12.12.2024 01:21:40
Incorrect default permissions in the AMD μProf installation directory could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution.
CVE-2023-31366
- EPSS 0.11%
- Veröffentlicht 13.08.2024 17:15:21
- Zuletzt bearbeitet 12.12.2024 01:21:40
Improper input validation in AMD μProf could allow an attacker to perform a write to an invalid address, potentially resulting in denial of service.