First published: Fri Jun 11 2021(Updated: )
A heap information leak/kernel pool address disclosure vulnerability in the AMD Graphics Driver for Windows 10 may lead to KASLR bypass.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Amd Radeon Pro Software | <21.q1 | |
AMD Radeon Software | <20.7.1 | |
Microsoft Windows 10 | ||
Microsoft Windows 10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-12987 is a heap information leak/kernel pool address disclosure vulnerability found in the AMD Graphics Driver for Windows 10.
If you are using Windows 10 with the affected AMD Graphics Driver versions, this vulnerability may lead to Kernel Address Space Layout Randomization (KASLR) bypass.
The following versions of the AMD Graphics Driver for Windows 10 are affected: Radeon Pro Software up to version 21.q1 and AMD Radeon Software up to version 20.7.1.
CVE-2020-12987 has a severity rating of 5.5 (medium).
To fix CVE-2020-12987, you should update your AMD Graphics Driver for Windows 10 to a version that is not affected by the vulnerability.