Home

Description

Debug code left active in AMD's Video Decoder Engine Firmware (VCN FW) could allow a attacker to submit a maliciously crafted command causing the VCN FW to perform read/writes HW registers, potentially impacting confidentiality, integrity and availabilability of the system.

PUBLISHED Reserved 2024-05-23 | Published 2026-02-12 | Updated 2026-02-12 | Assigner AMD




MEDIUM: 6.3CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:H/SI:H/SA:H

Problem types

CWE-1191 On-Chip Debug and Test Interface With Improper Access Control

Product status

Default status
affected

AMD Software: Adrenalin Edition 25.5.1, AMD Software: PRO Edition 25.Q2
unaffected

Default status
affected

AMD Software: Adrenalin Edition 25.5.1, AMD Software: PRO Edition 25.Q2
unaffected

Default status
affected

AMD Software: Adrenalin Edition 25.5.1, AMD Software: PRO Edition 25.Q2
unaffected

Default status
affected

AMD Software: Adrenalin Edition 25.5.1, AMD Software: PRO Edition 25.Q2
unaffected

Default status
affected

Q2 - 2025 AMD Embedded Ryzen[7000 8000 9000] Windows® Catalyst™ driver [25.6.1] (68926)
unaffected

Default status
affected

Q2 - 2025 AMD Embedded Ryzen[7000 8000 9000] Windows® Catalyst™ driver [25.6.1] (68926)
unaffected

Default status
affected

Q2 - 2025 AMD Embedded Ryzen[7000 8000 9000] Windows® Catalyst™ driver [25.6.1] (68926)
unaffected

Default status
affected

25.5.1 (25.10.01.09), AMD Software: PRO Edition 25.Q2(25.10.10), Radeon Software For Linux 25.10.1
unaffected

Default status
affected

25.5.1 (25.10.01.09), AMD Software: PRO Edition 25.Q2(25.10.10), Radeon Software For Linux 25.10.1
unaffected

Default status
affected

ROCm 6.2.4
unaffected

Default status
affected

ROCm 6.2.4
unaffected

Default status
affected

ROCm 6.2.4
unaffected

Default status
affected

ROCm 6.2.4
unaffected

Default status
affected

Contact your AMD Customer Engineering representative
unaffected

References

www.amd.com/...es/product-security/bulletin/AMD-SB-6024.html

cve.org (CVE-2024-36319)

nvd.nist.gov (CVE-2024-36319)

Download JSON