CVE-2024-21946

HIGH

AMD Ryzen Master Utility For Overcloc... - Incorrect Default Permissions

Title source: rule

Description

Incorrect default permissions in the AMD RyzenTM Master Utility installation directory could allow an attacker to achieve privilege escalation potentially resulting in arbitrary code execution.

Scores

CVSS v3 7.3
EPSS 0.0007
EPSS Percentile 22.1%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H

Classification

CWE
CWE-276
Status published

Affected Products (1)

amd/ryzen_master_utility_for_overclocking_control < 2.13.1.3097

Timeline

Published Nov 12, 2024
Tracked Since Feb 18, 2026