Vulnerability Details CVE-2023-20561
Insufficient validation of the IOCTL (Input Output Control) input buffer in AMD μProf may allow an authenticated user to send an arbitrary address potentially resulting in a Windows crash leading to denial of service.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 17.9%
CVSS Severity
CVSS v3 Score 5.5
Products affected by CVE-2023-20561
-
cpe:2.3:a:amd:amd_uprof:3.4.494
-
cpe:2.3:a:amd:amd_uprof:3.4.502
-
cpe:2.3:o:linux:linux_kernel:-
-
cpe:2.3:o:microsoft:windows:-