An improper privilege management in the AMD Radeon™ Graphics driver may allow an authenticated attacker to craft an IOCTL request to gain I/O control over arbitrary hardware ports or physical addresses resulting in a potential arbitrary code execution.
Metrics
No CVSS v4.0
Attack Vector Local
Attack Complexity Low
Privileges Required Low
Scope Unchanged
Confidentiality Impact High
Integrity Impact High
Availability Impact High
User Interaction None
No CVSS v3.0
No CVSS v2
This CVE is not in the KEV list.
The EPSS score is 0.01465.
Key SSVC decision points have not yet been added.
Affected Vendors & Products
| Vendors | Products |
|---|---|
|
Amd
Subscribe
|
Radeon Pro W5500
Subscribe
Radeon Pro W5700
Subscribe
Radeon Pro W6300
Subscribe
Radeon Pro W6400
Subscribe
Radeon Pro W6600
Subscribe
Radeon Pro W6800
Subscribe
Radeon Pro W7500
Subscribe
Radeon Pro W7600
Subscribe
Radeon Pro W7800
Subscribe
Radeon Pro W7900
Subscribe
Radeon Rx 5300
Subscribe
Radeon Rx 5300 Xt
Subscribe
Radeon Rx 5300m
Subscribe
Radeon Rx 5500
Subscribe
Radeon Rx 5500 Xt
Subscribe
Radeon Rx 5500m
Subscribe
Radeon Rx 5600
Subscribe
Radeon Rx 5600 Xt
Subscribe
Radeon Rx 5600m
Subscribe
Radeon Rx 5700
Subscribe
Radeon Rx 5700 Xt
Subscribe
Radeon Rx 5700m
Subscribe
Radeon Rx 6300m
Subscribe
Radeon Rx 6400
Subscribe
Radeon Rx 6450m
Subscribe
Radeon Rx 6500 Xt
Subscribe
Radeon Rx 6500m
Subscribe
Radeon Rx 6550m
Subscribe
Radeon Rx 6550s
Subscribe
Radeon Rx 6600
Subscribe
Radeon Rx 6600 Xt
Subscribe
Radeon Rx 6600m
Subscribe
Radeon Rx 6600s
Subscribe
Radeon Rx 6650 Xt
Subscribe
Radeon Rx 6650m
Subscribe
Radeon Rx 6650m Xt
Subscribe
Radeon Rx 6700
Subscribe
Radeon Rx 6700 Xt
Subscribe
Radeon Rx 6700m
Subscribe
Radeon Rx 6700s
Subscribe
Radeon Rx 6750 Gre 10gb
Subscribe
Radeon Rx 6750 Gre 12gb
Subscribe
Radeon Rx 6750 Xt
Subscribe
Radeon Rx 6800
Subscribe
Radeon Rx 6800 Xt
Subscribe
Radeon Rx 6800s
Subscribe
Radeon Rx 6900 Xt
Subscribe
Radeon Rx 6950 Xt
Subscribe
Radeon Rx 7600
Subscribe
Radeon Rx 7600m
Subscribe
Radeon Rx 7600m Xt
Subscribe
Radeon Rx 7600s
Subscribe
Radeon Rx 7700 Xt
Subscribe
Radeon Rx 7700s
Subscribe
Radeon Rx 7800 Xt
Subscribe
Radeon Rx 7900 Gre
Subscribe
Radeon Rx 7900 Xt
Subscribe
Radeon Rx 7900 Xtx
Subscribe
Radeon Rx 7900m
Subscribe
Radeon Software
Subscribe
Ryzen 3 7320u
Subscribe
Ryzen 3 7335u
Subscribe
Ryzen 3 7440u
Subscribe
Ryzen 5 6600h
Subscribe
Ryzen 5 6600hs
Subscribe
Ryzen 5 6600u
Subscribe
Ryzen 5 7500f
Subscribe
Ryzen 5 7520u
Subscribe
Ryzen 5 7535hs
Subscribe
Ryzen 5 7535u
Subscribe
Ryzen 5 7540u
Subscribe
Ryzen 5 7600
Subscribe
Ryzen 5 7600x
Subscribe
Ryzen 5 7640h
Subscribe
Ryzen 5 7640u
Subscribe
Ryzen 5 7645hx
Subscribe
Ryzen 5 Pro 7640hs
Subscribe
Ryzen 5 Pro 7645
Subscribe
Ryzen 7 6800h
Subscribe
Ryzen 7 6800hs
Subscribe
Ryzen 7 6800u
Subscribe
Ryzen 7 7700
Subscribe
Ryzen 7 7700x
Subscribe
Ryzen 7 7735hs
Subscribe
Ryzen 7 7735u
Subscribe
Ryzen 7 7736u
Subscribe
Ryzen 7 7745hx
Subscribe
Ryzen 7 7800x3d
Subscribe
Ryzen 7 7840h
Subscribe
Ryzen 7 7840u
Subscribe
Ryzen 7 Pro 7745
Subscribe
Ryzen 7 Pro 7840hs
Subscribe
Ryzen 9 6900hs
Subscribe
Ryzen 9 6900hx
Subscribe
Ryzen 9 6980hs
Subscribe
Ryzen 9 6980hx
Subscribe
Ryzen 9 7845hx
Subscribe
Ryzen 9 7900
Subscribe
Ryzen 9 7900x
Subscribe
Ryzen 9 7900x3d
Subscribe
Ryzen 9 7940h
Subscribe
Ryzen 9 7945hx
Subscribe
Ryzen 9 7945hx3d
Subscribe
Ryzen 9 7950x
Subscribe
Ryzen 9 7950x3d
Subscribe
Ryzen 9 Pro 7940hs
Subscribe
Ryzen 9 Pro 7945
Subscribe
|
Configuration 1 [-]
| AND |
|
Configuration 2 [-]
| AND |
|
Configuration 3 [-]
| AND |
|
No data.
No data.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-24777 | An improper privilege management in the AMD Radeon™ Graphics driver may allow an authenticated attacker to craft an IOCTL request to gain I/O control over arbitrary hardware ports or physical addresses resulting in a potential arbitrary code execution. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: AMD
Published:
Updated: 2024-08-02T09:05:36.253Z
Reserved: 2022-10-27T18:53:39.763Z
Link: CVE-2023-20598
Updated: 2024-08-02T09:05:36.253Z
Status : Modified
Published: 2023-10-17T14:15:09.813
Modified: 2024-11-21T07:41:12.177
Link: CVE-2023-20598
OpenCVE Enrichment
No data.
Weaknesses
EUVD