CVE-2023-20564

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
15/08/2023
Last modified:
23/08/2023

Description

<br /> <br /> <br /> <br /> <br /> <br /> <br /> Insufficient validation in the IOCTL (Input Output Control) input buffer in AMD Ryzen™ Master may permit a privileged attacker to perform memory reads/writes potentially leading to a loss of confidentiality or arbitrary kernel execution.<br /> <br /> <br /> <br /> <br /> <br /> <br /> <br /> <br /> <br /> <br /> <br />

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:amd:ryzen_master:*:*:*:*:*:*:*:* 2.11.2.2659 (excluding)
cpe:2.3:a:amd:ryzen_master_monitoring_sdk:*:*:*:*:*:*:*:* august_2023 (excluding)
cpe:2.3:o:microsoft:windows_10:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_11:-:*:*:*:*:*:*:*