cbcvebase.
CVE-2023-31366
published 2024-08-13

CVE-2023-31366: Improper input validation in AMD μProf could allow an attacker to perform a write to an invalid address, potentially resulting in denial of service.

PriorityP420medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.15%
4.6th percentile
Improper input validation in AMD μProf could allow an attacker to perform a write to an invalid address, potentially resulting in denial of service.

Affected

4 ranges
VendorProductVersion rangeFixed in
amdprof_tool>= μProf Tool < 3.4.4943.4.494
amduprof< 4.1.4244.1.424
amduprof< 4.2.8164.2.816
amduprof< 4.2.8454.2.845
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.