Uncontrolled Search Path Vulnerability in Vitis™ Embedded Single File Download by AMD
CVE-2025-0041

7.3HIGH

Key Information:

Vendor

Amd

Vendor
CVE Published:
11 August 2026

What is CVE-2025-0041?

A vulnerability exists within AMD's Vitis™ Embedded Single File Download that allows local Windows installations to be exploited by low-privileged users. This flaw enables them to manipulate search paths, potentially leading to arbitrary code execution. Users must take precautions to secure their systems against this vulnerability to prevent unauthorized access.

Affected Version(s)

Vitis™ Embedded Single File Download (SFD) for Windows 2026.1

References

CVSS V4

Score:
7.3
Severity:
HIGH
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
Unknown

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.