First published: Wed Feb 12 2025(Updated: )
Improper input validation in AMD Crash Defender could allow an attacker to provide the Windows® system process ID to a kernel-mode driver, resulting in an operating system crash, potentially leading to denial of service.
Credit: psirt@amd.com
Affected Software | Affected Version | How to fix |
---|---|---|
AMD Crash Defender | ||
Microsoft Windows Operating System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-21971 is classified as a high severity vulnerability due to its potential to cause a denial of service by crashing the operating system.
To mitigate CVE-2024-21971, ensure that your AMD Crash Defender and Microsoft Windows software are updated to the latest versions with security patches.
An attacker exploiting CVE-2024-21971 can provide invalid inputs to a kernel-mode driver, leading to an operating system crash.
CVE-2024-21971 affects AMD Crash Defender and Microsoft Windows systems.
The impact of CVE-2024-21971 is a potential denial of service, resulting in system instability and crashes.