CVE-2020-12901 describes an arbitrary free after use vulnerability in the AMD Graphics Driver for Windows 10, affecting AMD Radeon Software on Windows 10 systems. This flaw, rated Medium severity (CVSS 5.5), could allow a local attacker with low privileges to bypass Kernel Address Space Layout Randomization (KASLR) or disclose sensitive information. While the vulnerability has a low EPSS score and is not listed in CISA's KEV catalog, indicating a low likelihood of active exploitation, there is no public exploit code available, and it has received minimal community discussion and media coverage beyond a single article.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 20.7.1CPE matchmatch criteria | cpe:2.3:a:amd:radeon_software:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.