First published: Tue Nov 14 2023(Updated: )
Improper signature verification of RadeonTM RX Vega M Graphics driver for Windows may allow an attacker with admin privileges to launch AMDSoftwareInstaller.exe without validating the file signature potentially leading to arbitrary code execution.
Credit: psirt@amd.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
AMD Radeon RX Vega M Firmware | <23.10.01.46 | |
Any of | ||
Intel Core i5-8305g | ||
Intel Core i7-8705g | ||
Intel Core i7-8706g firmware | ||
Intel Core i7-8709g | ||
Intel NUC 8i7 HNKQC | ||
Intel NUC 8 Enthusiast NUC8i7HVKVAW | ||
Intel NUC 8 Enthusiast NUC8i7HVKVAW Firmware | ||
Intel NUC kit NUC8i7HNK | ||
Intel NUC Kit NUC8i7HVK | ||
All of | ||
AMD Radeon Software | <23.7.1 | |
Any of | ||
AMD Radeon RX 5300 Firmware | ||
AMD Radeon RX 5300 Firmware | ||
AMD Radeon RX 5300M Firmware | ||
AMD Radeon RX 5500 | ||
AMD Radeon RX 5500 XT Firmware | ||
AMD Radeon RX 5500M | ||
AMD Radeon RX 5600 | ||
AMD Radeon RX 5600 | ||
AMD Radeon RX 5600M | ||
AMD Radeon RX 5700 | ||
AMD Radeon RX 5700 XT | ||
AMD Radeon RX 5700m | ||
AMD Radeon RX 6300M | ||
AMD Radeon RX 6400 | ||
AMD Radeon RX 6450M | ||
AMD Radeon RX 6500 XT | ||
AMD Radeon RX 6500M | ||
AMD Radeon RX 6550M | ||
AMD Radeon RX 6550S | ||
AMD Radeon RX 6600 | ||
AMD Radeon RX 6600 XT | ||
AMD Radeon RX 6600M | ||
AMD Radeon RX 6600s | ||
AMD Radeon RX 6650 XT | ||
AMD Radeon RX 6650M | ||
AMD Radeon RX 6650M XT | ||
AMD Radeon RX 6700 | ||
AMD Radeon RX 6700 XT | ||
AMD Radeon RX 6700M | ||
AMD Radeon RX 6700s | ||
AMD Radeon RX 6800 | ||
AMD Radeon RX 6800 XT Firmware | ||
AMD Radeon RX 6800m | ||
AMD Radeon RX 6800s | ||
AMD Radeon RX 6850M XT | ||
AMD Radeon RX 6900 XT | ||
AMD Radeon RX 6950XT Firmware | ||
AMD Radeon RX 7600 | ||
AMD Radeon RX 7600m | ||
AMD Radeon RX 7600M XT | ||
AMD Radeon RX 7600s | ||
AMD Radeon RX 7700 XT Firmware | ||
AMD Radeon RX 7700s | ||
AMD Radeon RX 7800 XT | ||
AMD Radeon RX 7900 GRE | ||
AMD Radeon RX 7900XT Firmware | ||
AMD Radeon RX 7900XTX Firmware | ||
AMD Radeon RX 7900M | ||
All of | ||
AMD Radeon Software | <23.q3 | |
Any of | ||
amd radeon pro w5500 | ||
AMD Radeon Pro W5500X | ||
amd radeon pro w5700 | ||
AMD Radeon Pro W5700X Firmware | ||
AMD Radeon Pro W6300 | ||
AMD Radeon Pro W6300M | ||
AMD Radeon Pro W6400 Firmware | ||
AMD Radeon Pro W6500M | ||
AMD Radeon Pro W6600 | ||
AMD Radeon Pro W6600M | ||
AMD Radeon Pro W6600X | ||
amd Radeon pro w6800 | ||
AMD Radeon Pro W6800X | ||
AMD Radeon Pro W6800X Duo | ||
AMD Radeon Pro W6900X | ||
AMD Radeon Pro W7500 | ||
AMD Radeon Pro W7600 | ||
AMD Radeon Pro W7800 | ||
All of | ||
AMD Radeon RX Vega 56 | ||
AMD Radeon RX Vega 56 Firmware | ||
All of | ||
AMD Radeon RX Vega 64 | ||
AMD Radeon RX Vega 64 | ||
All of | ||
AMD Radeon Pro Vega 56 | ||
AMD Radeon Pro Vega 56 | ||
All of | ||
AMD Radeon Pro Vega 64 | ||
AMD Radeon Pro Vega 64 | ||
All of | ||
Any of | ||
AMD Radeon Software | <23.7.1 | |
AMD Radeon Software | <23.q3 | |
Any of | ||
AMD Ryzen 3 3015CE | ||
AMD Ryzen 3 3015e | ||
AMD Ryzen 3 4100 | ||
AMD Ryzen 4300G | ||
AMD Ryzen 4300GE | ||
AMD Ryzen 3 4300U | ||
AMD Ryzen 3 5300G Firmware | ||
AMD Ryzen 3 5300GE Firmware | ||
AMD Ryzen 3 5300U Firmware | ||
AMD Ryzen 5 4500 | ||
AMD Ryzen 5 4500U | ||
AMD Ryzen 5 4600G Firmware | ||
AMD Ryzen 5 4600GE | ||
AMD Ryzen 5 4600H Firmware | ||
amd ryzen 5 4600hs | ||
AMD Ryzen 5 4600U Firmware | ||
amd ryzen 5 4680u | ||
AMD Ryzen 5 5500H | ||
AMD Ryzen 5 5500U | ||
AMD Ryzen 5 5600GT Firmware | ||
AMD Ryzen 5 5600GE Firmware | ||
AMD Ryzen 5 Pro 3200G | ||
AMD Ryzen 5 Pro 3200GE | ||
AMD Ryzen Pro 3350G Firmware | ||
AMD Ryzen 5 Pro 3350GE Firmware | ||
AMD Ryzen 5 Pro 3400G Firmware | ||
AMD Ryzen 5 Pro 3400GE Firmware | ||
AMD Ryzen 7 4700G | ||
AMD Ryzen 7 4700GE Firmware | ||
AMD Ryzen 7 4700U | ||
AMD Ryzen 7 4800H | ||
amd ryzen 7 4800hs | ||
amd ryzen 7 4980u | ||
AMD Ryzen 7 5700G Firmware | ||
AMD Ryzen 7 5700GE Firmware | ||
AMD Ryzen 7 5700U Firmware | ||
AMD Ryzen 9 4900H Firmware | ||
amd ryzen 9 4900hs |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-20567 is considered critical due to its potential for arbitrary code execution.
To fix CVE-2023-20567, ensure that you update the AMD Radeon Software to the latest version above 23.7.1, as well as the AMD Radeon RX Vega M Firmware to above 23.10.01.46.
CVE-2023-20567 affects systems running AMD Radeon Software versions up to 23.7.1 and AMD Radeon RX Vega M Firmware versions below 23.10.01.46.
CVE-2023-20567 requires an attacker to have local administrator privileges to exploit the vulnerability.
Currently, there are no documented workarounds for CVE-2023-20567 other than applying the recommended software updates.