CVE-2023-31349

HIGH

AMD μProf - Privilege Escalation

Title source: llm

Description

Incorrect default permissions in the AMD μProf installation directory could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution.

Scores

CVSS v3 7.3
EPSS 0.0016
EPSS Percentile 36.6%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H

Classification

CWE
CWE-276
Status published

Affected Products (3)

amd/uprof < 4.1.424
amd/uprof < 4.2.816
amd/uprof < 4.2.845

Timeline

Published Aug 13, 2024
Tracked Since Feb 18, 2026