Privilege Escalation Vulnerability in AMD Secure Processor Drivers
CVE-2020-12930
7.8HIGH
Key Information:
- Vendor
- Amd
- Status
- Vendor
- CVE Published:
- 9 November 2022
Summary
The vulnerability arises from improper handling of parameters within the AMD Secure Processor (ASP) drivers. This security flaw could be exploited by a privileged attacker to escalate their permissions, leading to potential integrity compromise of the system. Addressing this issue is crucial for maintaining the security standards of systems utilizing AMD technology.
Affected Version(s)
AMD Radeon RX 5000 Series & PRO W5000 Series AMD Radeon Software < 22.5.2
AMD Radeon RX 5000 Series & PRO W5000 Series AMD Radeon Pro Software Enterprise < 22.Q2
AMD Radeon RX 5000 Series & PRO W5000 Series Enterprise Driver < 22.10.20
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved