VendorsAMDradeon_softwareany version
Vulnerabilities

AMD Advanced Micro Devices (AMD) Radeon Software any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

52CVEs
CVE-2020-12987
A heap information leak/kernel pool address disclosure vulnerability in the AMD Graphics Driver for Windows 10 may lead to KASLR bypass.
Published 2021-06-11 · Modified
5.5EPSS 0.003
CVE-2020-12901
Arbitrary Free After Use in AMD Graphics Driver for Windows 10 may lead to KASLR bypass or information disclosure.
Published 2021-11-15 · Modified
5.5EPSS 0.003
CVE-2020-12905
Out of Bounds Read in AMD Graphics Driver for Windows 10 in Escape 0x3004403 may lead to arbitrary information disclosure.
Published 2021-11-15 · Modified
5.5EPSS 0.003
CVE-2021-26393
Insufficient memory cleanup in the AMD Secure Processor (ASP) Trusted Execution Environment (TEE) may allow an authenticated attacker with privileges to generate a valid signed TA and potentially poison the contents of the process memory with attacker controlled data resulting in a loss of confidentiality.
Published 2022-11-09 · Modified
5.5EPSS 0.003
CVE-2020-12897
Kernel Pool Address disclosure in AMD Graphics Driver for Windows 10 may lead to KASLR bypass.
Published 2021-11-15 · Modified
5.5EPSS 0.002
CVE-2020-12904
Out of Bounds Read in AMD Graphics Driver for Windows 10 in Escape 0x3004203 may lead to arbitrary information disclosure.
Published 2021-11-15 · Modified
5.5EPSS 0.002
CVE-2021-26361
A malicious or compromised User Application (UApp) or AGESA Boot Loader (ABL) could be used by an attacker to exfiltrate arbitrary memory from the ASP stage 2 bootloader potentially leading to information disclosure.
Published 2022-05-12 · Modified
5.5EPSS 0.002
CVE-2020-12960
AMD Graphics Driver for Windows 10, amdfender.sys may improperly handle input validation on InputBuffer which may result in a denial of service (DoS).
Published 2021-11-15 · Modified
5.5EPSS 0.002
CVE-2020-12920
A potential denial of service issue exists in the AMD Display driver Escape 0x130007 Call handler. An attacker with low privilege could potentially induce a Windows BugCheck.
Published 2021-11-15 · Modified
5.5EPSS 0.002
CVE-2021-46748
Insufficient bounds checking in the ASP (AMD Secure Processor) may allow an attacker to access memory outside the bounds of what is permissible to a TA (Trusted Application) resulting in a potential denial of service.
Published 2023-11-14 · Modified
5.5EPSS 0.002
CVE-2021-26363
A malicious or compromised UApp or ABL could potentially change the value that the ASP uses for its reserved DRAM, to one outside of the fenced area, potentially leading to data exposure.
Published 2022-05-12 · Modified
4.4EPSS 0.002
CVE-2023-31307
Improper validation of array index in Power Management Firmware (PMFW) may allow a privileged attacker to cause an out-of-bounds memory read within PMFW, potentially leading to a denial of service.
Published 2024-08-13 · Analyzed
4.4EPSS 0.002
← Prev2 / 2