Advanced Micro Devices Inc.

First CVE: Oct 13, 2020Active for: 6 years
451
CVEs Published
More CVEs Published than 86% of tracked CNAs
64.4
Avg CVEs / Year
More Avg CVEs / Year than 86% of tracked CNAs
6.4
Avg CVSS Score
Higher Avg CVSS Score than 21% of tracked CNAs
0.0%
In CISA KEV
Bottom 1%

Self-Reporting Analysis

Of all the CVEs published by Advanced Micro Devices Inc. as a CNA, 56.5% affect products that Advanced Micro Devices Inc. develops as a vendor.

56.5%
43.5%
Self-reported: 255Third-party: 196

Of all the CVEs published that affect products developed by Advanced Micro Devices Inc., 85.9% are self-published by Advanced Micro Devices Inc. as a CNA.

85.9%
14.1%
Self-published: 255Published by other CNAs: 42

Trends Over Time

The number and severity of CVEs published by Advanced Micro Devices Inc. over time

Volume of CVEsAvg CVSS Base Score
First CVE
Oct 13, 2020
5 years ago
Most Recent CVE
Jun 26, 2026
28 days ago

Top CVEs

All CVEs published by Advanced Micro Devices Inc. as a CNA, regardless of affected vendor or product.

451 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Unrestricted IP address binding in the AMD Device Metrics Exporter (ROCm ecosystem) could allow a remote attacker to perform unauthorized changes to the GPU configuration, potentia
May 15, 20269.234NONO
A heap-based buffer overflow in the ionic cloud driver for VMware ESXi could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution.
May 13, 20268.833NONO
A heap-based buffer overflow in the ionic cloud driver for VMware ESXi could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution.
May 13, 20268.833NONO
Improper isolation of shared resources within the CPU operation cache on Zen 2-based products could allow an attacker to corrupt instructions executed at a different privilege leve
May 15, 20267.032NONO
Improper isolation of VCN-JPEG HW register space could allow a malicious Guest Virtual Machine (VM) or a process to perform unauthorized access to the register space of the JPEG co
May 15, 20268.832NONO
Improper restriction of operations within the bounds of a memory buffer in the AMD secure processer (ASP) could allow an attacker to read or write to protected memory potentially r
May 15, 20268.832NONO
The use of insecure HTTP transport within AMD optional tools could allow an attacker to conduct a man-in-the-middle attack, potentially leading to arbitrary code execution.
Jun 12, 20267.731NONO
Out of bounds write in AMD AMDGV_CMD_GET_DIAG_DATA ioctl handler could allow a local user to escalate privileges via remote code execution.
May 15, 20268.531NONO
Incorrect default permissions in the installation directory for the AMD chipset driver could allow an attacker to achieve privilege escalation resulting in arbitrary code execution
May 15, 20268.531NONO
An improper input validation vulnerability within the AMD Platform Management Framework (PMF) Driver can allow a local attacker to write Out-of-Bounds, potentially resulting in pri
May 15, 20268.531NONO

CVE Severity & Scoring

Severity distribution of CVEs published by this CNA451 CVEs
Severity distribution among all CVEs352,231 CVEs
LowMediumHighCritical
Attack Vector
Local366 (81.2%)
Network70 (15.5%)
Unknown0 (0.0%)
Physical15 (3.3%)
Adjacent Network0 (0.0%)
Attack Complexity
Low360 (79.8%)
High91 (20.2%)
Unknown0 (0.0%)
User Interaction
None414 (91.8%)
Unknown0 (0.0%)
Required27 (6.0%)
Privileges Required
Low262 (58.1%)
High119 (26.4%)
None70 (15.5%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this cna scope (451 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID published by Advanced Micro Devices Inc. as a CNA.

Media Mentions

Media articles that mention a CVE ID published by Advanced Micro Devices Inc. as a CNA — matched by CVE ID, not by organization name.

Top Affected Vendors

Top Affected Products

Top CWEs