Home

Description

Improper Input Validation in the AMD RAID driver could allow an attacker to point to an arbitrary memory location potentially resulting in privilege escalation and arbitrary code execution.

PUBLISHED Reserved 2024-01-03 | Published 2026-05-15 | Updated 2026-05-16 | Assigner AMD




HIGH: 8.6CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:A/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H

Problem types

CWE-1220 Insufficient Granularity of Access Control

Product status

Default status
affected

AMD RAID Software: 9.3.3.245
unaffected

Default status
affected

AMD RAID Software: 9.3.3.245
unaffected

Default status
affected

AMD RAID Software: 9.3.3.245
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

AMD RAID Software: 9.3.3.245
unaffected

Default status
affected

AMD RAID Software: 9.3.3.245
unaffected

Default status
affected

AMD RAID Software: 9.3.3.245
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

AMD RAID Software: 9.3.3.245
unaffected

Default status
affected

AMD RAID Software: 9.3.3.245
unaffected

Default status
affected

AMD RAID Software: 9.3.3.245
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

AMD RAID Software: 9.3.3.245
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

AMD RAID Software: 9.3.3.245
unaffected

Default status
affected

AMD RAID Software: 9.3.3.245
unaffected

Default status
affected

AMD RAID Software: 9.3.3.245
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

No fix planned
unaffected

Default status
affected

AMD RAID Software: 9.3.3.245
unaffected

Default status
affected

AMD RAID Software: 9.3.3.245
unaffected

Default status
affected

AMD RAID Software: 9.3.3.245
unaffected

Default status
affected

Embedded EPYC_4005 Windows RAID Driver - 9.3.3.00245 - (71794)
unaffected

Credits

Reported through AMD Bug Bounty Program

References

www.amd.com/...es/product-security/bulletin/AMD-SB-4016.html

cve.org (CVE-2024-21962)

nvd.nist.gov (CVE-2024-21962)

Download JSON