9.3

CVSS3.1

CVE-2024-38108 - Azure Stack Hub Spoofing Vulnerability

Azure Stack Hub Spoofing Vulnerability

📅 Published: Aug. 13, 2024, 5:29 p.m. 🔄 Last Modified: July 10, 2025, 4:32 p.m.

3.3

CVSS3.1

CVE-2023-31366 -

Improper input validation in AMD μProf could allow an attacker to perform a write to an invalid address, potentially resulting in denial of service.

📅 Published: Aug. 13, 2024, 4:57 p.m. 🔄 Last Modified: Dec. 12, 2024, 1:21 a.m.

7.3

CVSS3.1

CVE-2023-31349 -

Incorrect default permissions in the AMD μProf installation directory could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution.

📅 Published: Aug. 13, 2024, 4:57 p.m. 🔄 Last Modified: Dec. 12, 2024, 1:21 a.m.

7.3

CVSS3.1

CVE-2023-31348 -

A DLL hijacking vulnerability in AMD μProf could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution.

📅 Published: Aug. 13, 2024, 4:57 p.m. 🔄 Last Modified: Dec. 12, 2024, 1:21 a.m.

7.3

CVSS3.1

CVE-2023-31341 -

Insufficient validation of the Input Output Control (IOCTL) input buffer in AMD μProf may allow an authenticated attacker to cause an out-of-bounds write, potentially causing a Windows® OS crash, resulting in denial of service.

📅 Published: Aug. 13, 2024, 4:57 p.m. 🔄 Last Modified: Feb. 26, 2025, 7:14 a.m.

4.8

CVSS3.1

CVE-2023-31339 -

Improper input validation in ARM® Trusted Firmware used in AMD’s Zynq™ UltraScale+™) MPSoC/RFSoC may allow a privileged attacker to perform out of bound reads, potentially resulting in data leakage and denial of service.

📅 Published: Aug. 13, 2024, 4:56 p.m. 🔄 Last Modified: Nov. 27, 2024, 3:55 p.m.

5.7

CVSS3.1

CVE-2024-21981 -

Improper key usage control in AMD Secure Processor (ASP) may allow an attacker with local access who has gained arbitrary code execution privilege in ASP to extract ASP cryptographic keys, potentially resulting in loss of confidentiality and integrity.

📅 Published: Aug. 13, 2024, 4:54 p.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

5

CVSS3.1

CVE-2023-31310 -

Improper input validation in Power Management Firmware (PMFW) may allow an attacker with privileges to send a malformed input for the "set temperature input selection" command, potentially resulting in a loss of integrity and/or availability.

📅 Published: Aug. 13, 2024, 4:54 p.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

2.3

CVSS3.1

CVE-2023-31307 -

Improper validation of array index in Power Management Firmware (PMFW) may allow a privileged attacker to cause an out-of-bounds memory read within PMFW, potentially leading to a denial of service.

📅 Published: Aug. 13, 2024, 4:54 p.m. 🔄 Last Modified: Dec. 13, 2024, 4:30 p.m.

2.3

CVSS3.1

CVE-2023-31304 -

Improper input validation in SMU may allow an attacker with privileges and a compromised physical function (PF)     to modify the PCIe® lane count and speed, potentially leading to a loss of availability.

📅 Published: Aug. 13, 2024, 4:53 p.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 346541
Page 8612 of 34,655
« previous page » next page
Filters