CVE-2024-36333

HIGH

AMD Cleanup Utility - DLL Hijacking

Title source: llm
STIX 2.1

Description

A DLL hijacking vulnerability in the AMD Cleanup Utility could allow an attacker to achieve privilege escalation potentially resulting in arbitrary code execution.

Scores

CVSS v3 7.8
EPSS 0.0001
EPSS Percentile 1.3%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-427
Status published
Products (13)
AMD/AMD Cleanup Utility https://www.amd.com/en/resources/support-articles/faqs/GPU-601.html
AMD/AMD Radeon™ PRO VII AMD Software: PRO Edition 26.Q1 (23.19.24)
AMD/AMD Radeon™ PRO W5000 Series Graphics Products AMD Software: PRO Edition 25.Q3.1 (25.10.32 RDNA)
AMD/AMD Radeon™ PRO W6000 Series Graphics Products AMD Software: PRO Edition 25.Q3.1 (25.10.32 RDNA)
AMD/AMD Radeon™ PRO W7000 Series Graphics Products AMD Software: PRO Edition 25.Q3.1 (25.10.32 RDNA)
AMD/AMD Radeon™ PRO WX 8000/9000 Series Graphics Cards AMD Software: PRO Edition 26.Q1 (23.19.24)
AMD/AMD Radeon™ RX 5000 Series Graphics Products AMD Software: Adrenalin Edition 25.10.2 (25.20.21.01 RDNA3+, 25.10.33.02 RDNA1/RDNA2)
AMD/AMD Radeon™ RX 6000 Series Graphics Products AMD Software: Adrenalin Edition 25.10.2 (25.20.21.01 RDNA3+, 25.10.33.02 RDNA1/RDNA2)
AMD/AMD Radeon™ RX 7000 Series Graphics Products AMD Software: Adrenalin Edition 25.10.2 (25.20.21.01 RDNA3+, 25.10.33.02 RDNA1/RDNA2)
AMD/AMD Radeon™ RX Vega Series Graphics Cards AMD Software: Adrenalin Edition 26.1.1 (23.19.24)
... and 3 more
Published May 15, 2026
Tracked Since May 15, 2026