CVE-2023-31341: High severity amd uprof vulnerability
Insufficient validation of the Input Output Control (IOCTL) input buffer in AMD ?Prof may allow an authenticated attacker to cause an out-of-bounds write, potentially causing a Windows® OS crash, resulting in denial of service.
Other sources
Insufficient validation of the Input Output Control (IOCTL) input buffer in AMD μProf may allow an authenticated attacker to cause an out-of-bounds write, potentially causing a Windows® OS crash, resulting in denial of service.
— MITRE
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-31341?
CVE-2023-31341 is classified as a denial of service vulnerability that can cause a Windows OS crash.
How do I fix CVE-2023-31341?
To mitigate CVE-2023-31341, update AMD uprof to the latest version available for your operating system.
What platforms are affected by CVE-2023-31341?
CVE-2023-31341 affects AMD uprof on Linux, FreeBSD, and Windows platforms.
Can CVE-2023-31341 be exploited remotely?
CVE-2023-31341 requires authentication for exploitation, meaning only an authenticated attacker can trigger the vulnerability.
What are the potential impacts of CVE-2023-31341?
Exploitation of CVE-2023-31341 may lead to an out-of-bounds write that can crash the system, resulting in a denial of service.