Description
Improper restriction of operations within the bounds of a memory buffer in the AMD secure processer (ASP) could allow an attacker to read or write to protected memory potentially resulting in arbitrary code execution.
Published: 2026-05-15
Score: 8.8 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Fri, 15 May 2026 12:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 15 May 2026 11:45:00 +0000

Type Values Removed Values Added
First Time appeared Amd
Amd instinct Mi210
Amd instinct Mi250
Amd radeon Pro W6000 Series
Amd radeon Pro W7000 Series
Amd radeon Rx 6000 Series
Amd radeon Rx 7000 Series
Vendors & Products Amd
Amd instinct Mi210
Amd instinct Mi250
Amd radeon Pro W6000 Series
Amd radeon Pro W7000 Series
Amd radeon Rx 6000 Series
Amd radeon Rx 7000 Series

Fri, 15 May 2026 04:45:00 +0000

Type Values Removed Values Added
Title Arbitrary Code Execution via Buffer Overflow in AMD Secure Processor

Fri, 15 May 2026 03:00:00 +0000

Type Values Removed Values Added
Description Improper restriction of operations within the bounds of a memory buffer in the AMD secure processer (ASP) could allow an attacker to read or write to protected memory potentially resulting in arbitrary code execution.
Weaknesses CWE-119
References
Metrics cvssV4_0

{'score': 8.8, 'vector': 'CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H'}


Subscriptions

Amd Instinct Mi210 Instinct Mi250 Radeon Pro W6000 Series Radeon Pro W7000 Series Radeon Rx 6000 Series Radeon Rx 7000 Series
cve-icon MITRE

Status: PUBLISHED

Assigner: AMD

Published:

Updated: 2026-05-15T11:18:40.029Z

Reserved: 2023-04-27T15:25:41.423Z

Link: CVE-2023-31317

cve-icon Vulnrichment

Updated: 2026-05-15T11:18:34.345Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-05-15T03:16:20.663

Modified: 2026-05-15T14:10:17.083

Link: CVE-2023-31317

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-05-15T11:20:57Z

Weaknesses