Amd Security Vulnerabilities (CVEs)
Track 74 security vulnerabilities affecting Amd products and software. Get instant email alerts when new CVEs are discovered, automated security monitoring, and patch guidance.
A race condition vulnerability in AMD Secure Processor (ASP) allows attackers to corrupt memory by exploiting timing differences between checking and ...
Feb 11, 2026This CVE describes a Time-of-check time-of-use (TOCTOU) race condition vulnerability in AMD Secure Processor (ASP) that could allow attackers to modif...
Feb 11, 2026An improper return value vulnerability in AMD uProf allows local attackers to bypass Kernel Security Lockdown Restrictions (KSLR), potentially enablin...
Nov 24, 2025This vulnerability in AMD uprof allows a local attacker to write to arbitrary physical memory addresses due to improper input validation. This could l...
Nov 24, 2025This vulnerability in AMD uProf allows a local attacker to perform out-of-bounds memory writes through improper input validation. This could lead to a...
Nov 24, 2025This vulnerability in AMD uprof allows a local attacker to overwrite Model-Specific Registers (MSRs) due to improper input validation. This could lead...
Nov 21, 2025This vulnerability involves incorrect default permissions in AMD Manageability API that could allow a local attacker to escalate privileges on affecte...
May 13, 2025This vulnerability allows local attackers to escalate privileges by exploiting incorrect default permissions in the AMD Management Console installatio...
Nov 12, 2024This vulnerability in AMD's NPU driver allows attackers to execute arbitrary code by exploiting improper input validation. It affects systems with vul...
Nov 12, 2024This vulnerability allows local attackers to escalate privileges by exploiting incorrect default permissions in the AMD Cloud Manageability Service (A...
Nov 12, 2024This vulnerability allows local attackers to escalate privileges by exploiting incorrect default permissions in the AMD Ryzen Master Utility installat...
Nov 12, 2024This vulnerability involves incorrect default permissions in the AMD HIP SDK installation directory, allowing local attackers to modify files and pote...
Nov 12, 2024This vulnerability in AMD μProf allows authenticated attackers to trigger an out-of-bounds write through insufficient IOCTL input validation, potenti...
Aug 13, 2024Incorrect default permissions in AMD μProf installation directory allow local attackers to modify files, potentially leading to privilege escalation ...
Aug 13, 2024This CVE describes a TOCTOU (Time-Of-Check-Time-Of-Use) vulnerability in AMD System Management Mode (SMM) that could allow an attacker with ring0 priv...
Aug 13, 2024This AMD processor vulnerability allows improper IOMMU re-initialization during DRTM events, enabling attackers to potentially read or modify hypervis...
Aug 13, 2024This vulnerability allows attackers to write outside the bounds of APCB firmware memory, potentially corrupting system data structures and enabling ar...
Aug 13, 2024This AMD processor vulnerability allows attackers with local access to misconfigure Trusted Memory Regions (TMRs), potentially enabling arbitrary memo...
Aug 13, 2024This vulnerability in AMD Secure Nested Paging (SNP) firmware allows a malicious hypervisor to improperly write to a guest's protected memory regions....
Aug 5, 2024This vulnerability in AMD Secure Nested Paging (SNP) firmware allows a malicious hypervisor to overwrite a guest's UMC (Unified Memory Controller) see...
Aug 5, 2024This AMD Secure Processor vulnerability allows a malicious Trusted Application (TA) to read from or write to the ASP Secure OS kernel virtual address ...
Feb 13, 2024This vulnerability allows attackers with compromised SMI handlers to bypass security boundaries and gain Ring0 (kernel-level) access, potentially lead...
Nov 14, 2023This vulnerability allows local attackers to bypass System Management Mode (SMM) protections on affected AMD processors, potentially enabling privileg...
Nov 14, 2023This CVE describes a race condition vulnerability in AMD System Management Mode (SMM) code that could allow a local attacker with compromised user spa...
Nov 14, 2023This vulnerability in AMD processors allows attackers to corrupt SMRAM (System Management Mode RAM) by exploiting improper validation of SMM communica...
Nov 14, 2023This vulnerability allows attackers with local access to bypass System Management Mode (SMM) protections and write to SPI ROM, potentially leading to ...
Nov 14, 2023This vulnerability in AMD uProf allows authenticated users to bypass driver signature validation through insufficient IOCTL buffer validation, potenti...
Aug 8, 2023This vulnerability in AMD Radeon Software Crimson ReLive Edition allows attackers to escalate privileges on affected systems. It affects users running...
Aug 8, 2023This vulnerability in AMD's Secure Processor bootloader allows attackers with compromised Uapp or ABL components to force the bootloader to leak sensi...
May 9, 2023This vulnerability in AMD Secure Processor bootloader allows attackers with malicious user applications or ABL to send malformed syscalls, potentially...
May 9, 2023This vulnerability allows a malicious or compromised UApp or ABL to send malformed system calls to AMD bootloaders, potentially leading to out-of-boun...
May 9, 2023This vulnerability in AMD's ABL (AGESA Boot Loader) allows a privileged attacker to corrupt ASP (AMD Secure Processor) memory through insufficient inp...
May 9, 2023This vulnerability in AMD Secure Processor firmware allows attackers to trigger a data abort through insufficient bounds checking in SMI mailbox check...
May 9, 2023This vulnerability allows attackers with malicious firmware (Uapp or ABL) to bypass length validation in AMD Secure Processor sensor fusion hub header...
May 9, 2023This vulnerability allows a privileged attacker to write beyond intended memory bounds in AMD's System Management Unit (SMU), potentially compromising...
May 9, 2023This vulnerability allows a privileged attacker to bypass syscall input validation in AMD's ASP Bootloader, enabling arbitrary DMA copies that can lea...
May 9, 2023This AMD processor vulnerability allows insufficient input validation on the VM_HSAVE_PA register, potentially enabling attackers to compromise SEV-SN...
May 9, 2023This vulnerability in AMD ASP Bootloader allows attackers to corrupt return addresses via stack-based buffer overflows, potentially leading to arbitra...
May 9, 2023This vulnerability is a Time-of-Check Time-of-Use (TOCTOU) race condition in AMD's ASP bootloader that allows an attacker to tamper with SPI ROM data ...
May 9, 2023This vulnerability allows an attacker to corrupt SMRAM (System Management RAM) by exploiting insufficient input validation in the SMU (System Manageme...
May 9, 2023This vulnerability in AMD's Secure Encrypted Virtualization (SEV) and SEV-ES technology allows insufficient validation of Owner's Certificate Authorit...
May 9, 2023This vulnerability in AMD's CPM OEM SMM (System Management Mode) firmware allows a privileged attacker to manipulate control flow and tamper with SMM ...
Apr 2, 2023This vulnerability allows low-privileged users to modify files during AMD Ryzen Master installation, potentially leading to privilege escalation and a...
Mar 1, 2023CVE-2021-26384 is an AMD CPU vulnerability where a malformed System Management Interface (SMI) command can corrupt SMI Trigger Info data structures, p...
Jul 14, 2022This vulnerability in AMD System Management Mode (SMM) allows attackers to bypass protocol verification and modify SPI flash memory. This could lead t...
May 12, 2022CVE-2021-26386 is a memory corruption vulnerability in AMD's Stage 2 Bootloader that could allow a malicious or compromised UApp or ABL to execute arb...
May 12, 2022This AMD processor vulnerability allows malicious or compromised applications to issue malformed system calls that map sensitive System Management Net...
May 12, 2022CVE-2021-26369 is an AMD Secure Processor bootloader vulnerability where malicious or compromised UApp/ABL can send malformed system calls, causing ou...
May 12, 2022This vulnerability in AMD Secure Processor firmware allows insufficient address validation in system calls, potentially enabling arbitrary code execut...
May 10, 2022This AMD Secure Encrypted Virtualization-Encrypted State (SEV-ES) firmware vulnerability allows attackers to compromise the integrity or availability ...
May 10, 2022Why Monitor Amd Security Vulnerabilities?
Real-time CVE tracking: Our automated system monitors 74+ known vulnerabilities affecting Amd products and software packages. Stay ahead of emerging threats with instant email notifications when new security issues are discovered.
Automated security monitoring: Unlike manual CVE checking, FixTheCVE automatically scans your servers and detects vulnerable Amd packages in under 60 seconds. No agents required - completely agentless scanning that works across Amd deployments.
Free vulnerability database: Access detailed information about every Amd CVE including CVSS scores, severity ratings, affected versions, and actionable patch guidance. Filter by critical, high, medium, or low severity to prioritize your security remediation efforts.
🚀 Get Started in 60 Seconds
- Register free account & add your servers
- Run one-time scan or schedule automatic monitoring (every 1-24 hours)
- Receive instant alerts when new Amd CVEs affect your systems
- Access dashboard with severity breakdown & fix instructions