Vulnerability Details CVE-2022-23831
Insufficient validation of the IOCTL input buffer in AMD μProf may allow an attacker to send an arbitrary buffer leading to a potential Windows kernel crash resulting in denial of service.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 38.0%
CVSS Severity
CVSS v3 Score 7.5
Products affected by CVE-2022-23831
-
cpe:2.3:a:amd:amd_uprof:3.4.494
-
cpe:2.3:a:amd:amd_uprof:3.4.502
-
cpe:2.3:o:freebsd:freebsd:-
-
cpe:2.3:o:linux:linux_kernel:-
-
cpe:2.3:o:microsoft:windows:-