First published: Wed Nov 09 2022(Updated: )
Insufficient validation of the IOCTL input buffer in AMD ?Prof may allow an attacker to send an arbitrary buffer leading to a potential Windows kernel crash resulting in denial of service.
Credit: psirt@amd.com
Affected Software | Affected Version | How to fix |
---|---|---|
AMD uProf | <3.6.549 | |
FreeBSD Kernel | ||
AMD uProf | <3.6.839 | |
Microsoft Windows | ||
AMD uProf | <3.6.449 | |
Linux Kernel |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2022-23831.
The severity level of CVE-2022-23831 is high with a score of 7.5.
The affected software is AMD ?Prof version up to 3.6.549.
An attacker can send an arbitrary buffer, potentially leading to a Windows kernel crash and denial of service.
There is currently no known fix or patch available for CVE-2022-23831. It is recommended to follow the guidance provided by the software vendor.