amd uprof CVE Vulnerabilities (9)

CVEs: 9 CPE versions: View versions table

Summary

This page lists publicly disclosed CVE vulnerabilities affecting amd uprof (linked via NVD CPE). Each row includes severity scores, summaries, and publication dates to help identify and analyze security issues.

Showing 19 of 9 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2025-48511 Improper input validation within AMD uprof can allow a local attacker to write to an arbitrary physical address, potentially resulting in crash or denial of service. [email protected] 5.5 0.01% 2025-11-24 2025-11-26
CVE-2025-48510 Improper return value within AMD uProf can allow a local attacker to bypass KSLR, potentially resulting in loss of confidentiality or availability. [email protected] 7.1 0.01% 2025-11-24 2025-11-26
CVE-2025-29933 Improper input validation within AMD uProf can allow a local attacker to write out of bounds, potentially resulting in a crash or denial of service [email protected] 5.5 0.01% 2025-11-24 2025-11-26
CVE-2025-48502 Improper input validation within AMD uprof can allow a local attacker to overwrite MSR registers, potentially resulting in crash or denial of service. [email protected] 5.5 0.01% 2025-11-21 2025-11-26
CVE-2024-36340 A junction point vulnerability within AMD uProf can allow a local low-privileged attacker to create junction points, potentially resulting in arbitrary file deletion or disclosure. [email protected] 6.6 0.05% 2025-05-13 2025-11-26
CVE-2023-31366 Improper input validation in AMD μProf could allow an attacker to perform a write to an invalid address, potentially resulting in denial of service. [email protected] 3.3 0.11% 2024-08-13 2024-12-12
CVE-2023-31349 Incorrect default permissions in the AMD μProf installation directory could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution. [email protected] 7.3 0.16% 2024-08-13 2024-12-12
CVE-2023-31348 A DLL hijacking vulnerability in AMD μProf could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution. [email protected] 7.3 0.17% 2024-08-13 2024-12-12
CVE-2023-31341 Insufficient validation of the Input Output Control (IOCTL) input buffer in AMD μProf may allow an authenticated attacker to cause an out-of-bounds write, potentially causing a Windows® OS crash, resulting in denial of service. [email protected] 7.3 0.07% 2024-08-13 2025-02-26
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence