Privilege Escalation Vulnerability in AMD Optimizing CPU Libraries
CVE-2024-21960

7.3HIGH

Key Information:

Vendor

Amd

Vendor
CVE Published:
13 May 2025

What is CVE-2024-21960?

An issue in the installation directory of the AMD Optimizing CPU Libraries (AOCL) has been identified, where incorrect default permissions could let an attacker escalate privileges. This flaw poses a risk that may potentially allow unauthorized individuals to execute arbitrary code, highlighting the need for immediate remediation and careful review of security practices around the installation of these libraries.

Affected Version(s)

AMD Optimizing CPU Libraries (AOCL) 4.2.1

References

CVSS V3.1

Score:
7.3
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.