CVE-2025-48503 is a DLL hijacking vulnerability in the AMD Software Installer, which could allow a local attacker to achieve privilege escalation and potentially execute arbitrary code. The vulnerability has a high CVSS score of 7.8, indicating a significant impact with high confidentiality, integrity, and availability concerns, but requires high attack complexity. Currently, there is no public exploit code available, no evidence of active exploitation, and minimal community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
| AMD | AMD Athlon™ 3000 Series Mobile Processors With Radeon™ Graphics (Formerly Codenamed "Dali") | Range not provided by sourceCNA affecteddefault affected | |
| AMD | AMD Athlon™ 3000 Series Mobile Processors With Radeon™ Graphics (Formerly Codenamed "Picasso") | Range not provided by sourceCNA affecteddefault affected | |
| AMD | AMD Radeon™ PRO W5000 Series Graphics Products | Range not provided by sourceCNA affecteddefault affected | |
| AMD | AMD Radeon™ PRO W6000 Series Graphics Products | Range not provided by sourceCNA affecteddefault affected | |
| AMD | AMD Radeon™ PRO W7000 Series Graphics Products | Range not provided by sourceCNA affecteddefault affected |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.4 InfoSec Media, 0.1 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.