Advanced Micro Devices Inc.
Self-Reporting Analysis
Of all the CVEs published by Advanced Micro Devices Inc. as a CNA, 56.5% affect products that Advanced Micro Devices Inc. develops as a vendor.
Of all the CVEs published that affect products developed by Advanced Micro Devices Inc., 85.9% are self-published by Advanced Micro Devices Inc. as a CNA.
Trends Over Time
The number and severity of CVEs published by Advanced Micro Devices Inc. over time
Top CVEs
All CVEs published by Advanced Micro Devices Inc. as a CNA, regardless of affected vendor or product.
451 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-0481CRITICAL Unrestricted IP address binding in the AMD Device Metrics Exporter (ROCm ecosystem) could allow a remote attacker to perform unauthorized changes to the GPU configuration, potentia | May 15, 2026 | 9.2 | 34 | NO | NO |
CVE-2025-62624HIGH A heap-based buffer overflow in the ionic cloud driver for VMware ESXi could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution. | May 13, 2026 | 8.8 | 33 | NO | NO |
CVE-2025-62623HIGH A heap-based buffer overflow in the ionic cloud driver for VMware ESXi could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution. | May 13, 2026 | 8.8 | 33 | NO | NO |
CVE-2025-54518HIGH Improper isolation of shared resources within the CPU operation cache on Zen 2-based products could allow an attacker to corrupt instructions executed at a different privilege leve | May 15, 2026 | 7.0 | 32 | NO | NO |
CVE-2024-36323HIGH Improper isolation of VCN-JPEG HW register space could allow a malicious Guest Virtual Machine (VM) or a process to perform unauthorized access to the register space of the JPEG co | May 15, 2026 | 8.8 | 32 | NO | NO |
CVE-2023-31317HIGH Improper restriction of operations within the bounds of a memory buffer in the AMD secure processer (ASP) could allow an attacker to read or write to protected memory potentially r | May 15, 2026 | 8.8 | 32 | NO | NO |
CVE-2026-40677HIGH The use of insecure HTTP transport within AMD optional tools could allow an attacker to conduct a man-in-the-middle attack, potentially leading to arbitrary code execution. | Jun 12, 2026 | 7.7 | 31 | NO | NO |
CVE-2025-54517HIGH Out of bounds write in AMD AMDGV_CMD_GET_DIAG_DATA ioctl handler could allow a local user to escalate privileges via remote code execution. | May 15, 2026 | 8.5 | 31 | NO | NO |
CVE-2026-0432HIGH Incorrect default permissions in the installation directory for the AMD chipset driver could allow an attacker to achieve privilege escalation resulting in arbitrary code execution | May 15, 2026 | 8.5 | 31 | NO | NO |
CVE-2025-52540HIGH An improper input validation vulnerability within the AMD Platform Management Framework (PMF) Driver can allow a local attacker to write Out-of-Bounds, potentially resulting in pri | May 15, 2026 | 8.5 | 31 | NO | NO |
CVE Severity & Scoring
Exploit Exposure
Signals from CVEs in this cna scope (451 CVEs).
Social Chatter
An overview of all social media posts that mention a CVE ID published by Advanced Micro Devices Inc. as a CNA.
Media Mentions
Media articles that mention a CVE ID published by Advanced Micro Devices Inc. as a CNA — matched by CVE ID, not by organization name.