ZeroHour

CVE-2023-20567

CVSS 3.1
6.7 medium
EPSS
<1%p5
Published
()
Modified
Description

Improper signature verification of RadeonTM RX Vega M Graphics driver for Windows may allow an attacker with admin privileges to launch AMDSoftwareInstaller.exe without validating the file signature potentially leading to arbitrary code execution.

Vendors
intelamd
Products
radeon rx vega m firmware, radeon software, radeon rx vega 56 firmware, radeon rx vega 64 firmware, radeon pro vega 56 firmware, radeon pro vega 64 firmware
Weakness
CWE-347
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.