Improper Signature Verification in Radeon RX Vega M Graphics Driver by AMD
CVE-2023-20568
Key Information:
- Vendor
- Amd
- Status
- Vendor
- CVE Published:
- 14 November 2023
Summary
The Radeon™ RX Vega M Graphics driver for Windows faces a significant flaw related to improper signature verification. This vulnerability allows an attacker with administrative privileges to execute RadeonInstaller.exe without proper validation of its file signature. As a result, this can potentially lead to arbitrary code execution, posing a serious threat to systems utilizing this driver. Users are advised to update their drivers and follow recommended security practices to mitigate the risks associated with this vulnerability.
Affected Version(s)
Radeon™ PRO W5000/W6000/W7000 Series Graphics Cards x86 various
Radeon™ PRO WX Vega Series Graphics Cards x86 various
Radeon™ RX 5000/6000/7000 Series Graphics Cards x86 various
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved