CVE Tools

Advanced-micro-devices-inc

112 CVEs tracked since 2018. Since Jan 2018, none of them reached CISA KEV.

Advanced-micro-devices-inc CVEs per month

Jan 2018 to Feb 2026. Point at a month, or focus the strip and use the arrow keys.
Advanced-micro-devices-inc CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2018-0120
2018-02null or fewer
2018-0360
2018-04null or fewer
2018-05null or fewer
2018-06null or fewer
2018-07null or fewer
2018-08null or fewer
2018-09null or fewer
2018-10null or fewer
2018-11null or fewer
2018-12null or fewer
2019-01null or fewer
2019-02null or fewer
2019-03null or fewer
2019-04null or fewer
2019-05null or fewer
2019-06null or fewer
2019-07null or fewer
2019-08null or fewer
2019-09null or fewer
2019-10null or fewer
2019-11null or fewer
2019-12null or fewer
2020-01null or fewer
2020-02null or fewer
2020-0320
2020-04null or fewer
2020-05null or fewer
2020-06null or fewer
2020-07null or fewer
2020-08null or fewer
2020-09null or fewer
2020-10null or fewer
2020-11null or fewer
2020-12null or fewer
2021-01null or fewer
2021-02null or fewer
2021-03null or fewer
2021-04null or fewer
2021-05null or fewer
2021-06null or fewer
2021-07null or fewer
2021-08null or fewer
2021-09null or fewer
2021-10null or fewer
2021-1130
2021-12null or fewer
2022-01null or fewer
2022-02null or fewer
2022-03null or fewer
2022-04null or fewer
2022-0540
2022-06null or fewer
2022-0730
2022-08null or fewer
2022-09null or fewer
2022-10null or fewer
2022-11null or fewer
2022-12null or fewer
2023-01250
2023-02null or fewer
2023-03null or fewer
2023-04null or fewer
2023-05null or fewer
2023-06null or fewer
2023-07null or fewer
2023-0850
2023-09null or fewer
2023-10null or fewer
2023-11110
2023-12null or fewer
2024-01null or fewer
2024-02null or fewer
2024-03null or fewer
2024-04null or fewer
2024-05null or fewer
2024-06null or fewer
2024-07null or fewer
2024-08120
2024-09null or fewer
2024-10null or fewer
2024-11null or fewer
2024-12null or fewer
2025-01null or fewer
2025-02120
2025-03null or fewer
2025-0440
2025-05null or fewer
2025-06null or fewer
2025-07null or fewer
2025-08null or fewer
2025-0950
2025-10null or fewer
2025-11null or fewer
2025-12null or fewer
2026-01null or fewer
2026-02180

Products

The products that kept showing up in Advanced-micro-devices-inc's monthly top three, with their CVEs summed over those months.

  1. 3rd Gen Amd Epyc406 months
  2. 2nd Gen Amd Epyc224 months
  3. 4th Gen Amd Epyc122 months
  4. 1st Gen Amd Epyc94 months
  5. Amd Epyc 9005 Series91 month
  6. Amd Epyc Embedded 9005 Series Processors71 month
  7. Amd Ryzen 5000 Series Mobile Processor With Radeon Graphics71 month
  8. Amd Radeon Rx 6000 Series Graphics Cards62 months
  9. Amd Ryzen 3000 Series Desktop Processors Matisse AM461 month
  10. Amd Ryzen 3000 Series Mobile Processors With Radeon Graphics Picasso61 month

Latest CVEs

The 15 most recently published vulnerabilities affecting Advanced-micro-devices-inc.

  1. CVE-2023-20540An observable timing discrepancy in the ASP could allow a privileged attacker to perform a brute-force attack against the hash message authentication code, allowing arbitrary message input, potenti...5.2
  2. CVE-2024-21944Improper input validation for DIMM serial presence detect (SPD) metadata could allow an attacker with physical access, ring0 access on a system with a non-compliant DIMM, or control over the Root o...5.3
  3. CVE-2025-54518Improper isolation of shared resources within the CPU operation cache on Zen 2-based products could allow an attacker to corrupt instructions executed at a different privilege level, potentially re...7.0
  4. CVE-2025-54502Incorrect use of boot service in the AMD Platform Configuration Blob (APCB) SMM driver could allow a privileged attacker with local access (Ring 0) to achieve privilege escalation potentially resul...7.5
  5. CVE-2023-20585Insufficient checks of the RMP on host buffer access in IOMMU may allow an attacker with privileges and a compromised hypervisor to trigger an out of bounds condition without RMP checks, resulting ...5.3
  6. CVE-2024-21961Improper restriction of operations within the bounds of a memory buffer in PCIe® Link could allow an attacker with access to a guest virtual machine to potentially perform a denial of service atta...6.3
  7. CVE-2025-52533Improper Access Control in an on-chip debug interface could allow a privileged attacker to enable a debug interface and potentially compromise data confidentiality or integrity.7.7
  8. CVE-2024-36311A Time-of-check time-of-use (TOCTOU) race condition in the SMM communications buffer could allow a privileged attacker to bypass input validation and perform an out of bounds read or write, potenti...4.2
  9. CVE-2025-48515Insufficient parameter sanitization in AMD Secure Processor (ASP) Boot Loader could allow an attacker with access to SPIROM upgrade to overwrite the memory, potentially resulting in arbitrary code ...6.0
  10. CVE-2021-26410Improper syscall input validation in ASP (AMD Secure Processor) may force the kernel into reading syscall parameter values from its own memory space allowing an attacker to infer the contents of th...5.2
  11. CVE-2021-26381Improper system call parameter validation in the Trusted OS may allow a malicious driver to perform mapping or unmapping operations on a large number of pages, potentially resulting in kernel memor...6.4
  12. CVE-2024-36355Improper input validation in the SMM handler could allow an attacker with Ring0 access to write to SMRAM and modify execution flow for S3 (sleep) wake up, potentially resulting in arbitrary code ex...5.3
  13. CVE-2024-36310Improper input validation in the SMM communications buffer could allow a privileged attacker to perform an out of bounds read or write to SMRAM potentially resulting in loss of confidentiality or i...3.4
  14. CVE-2025-0029Improper handling of error condition during host-induced faults can allow a local high-privileged attack to selectively drop guest DMA writes, potentially resulting in a loss of SEV-SNP guest memor...2.5
  15. CVE-2025-48514Insufficient Granularity of Access Control in SEV firmware can allow a privileged attacker to create a SEV-ES Guest to attack SNP guest, potentially resulting in a loss of confidentiality.3.2

The record

Peak rank
#34 in Jan 2023
Busiest month shown
Jan 2023, 25 CVEs
Months with a KEV entry
0 since Jan 2018
Monthly snapshots
14 since 2018
Advanced-micro-devices-inc's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store