Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Advanced Micro Devices Inc.

First CVE: May 2, 2005Active for: 21 yearsTotal CVEs: 297
23.1
VTI Score
Low

Advanced Micro Devices manufactures a very broad portfolio of processors, accelerators, and server platforms spanning consumer, enterprise, and high-performance computing segments, positioning it among the most prominent vendors in the vulnerability landscape. Its vulnerability disclosures cluster heavily within the EPYC server-processor line and recur through weakness classes reflecting the complexity of modern processor design: improper input validation, boundary conditions in memory operations, and insufficient documentation of hardware behavior. A meaningful share of the vendor's CVEs reach critical severity, though the technical nature of processor-level vulnerabilities—often requiring specialized access or firmware updates rather than application-layer exploitation—shapes the practical remediation profile. Defenders tracking this vendor should prioritize advisories affecting EPYC deployments in mission-critical infrastructure, as patches frequently require coordinated firmware and BIOS updates across large server fleets; current exploitation activity and exposure counts are shown alongside this summary.

FAUCET AI Generated
297
Total CVEs
More Total CVEs than 100% of tracked vendors
0.0
Avg CVEs / Product / Year
Bottom 1%
6.9
Avg CVSS Score
Higher Avg CVSS Score than 48% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Advanced Micro Devices Inc. over time

Volume of CVEsAvg CVSS Base Score
First CVE
May 2, 2005
21 years ago
Most Recent CVE
Jun 9, 2026
45 days ago

Self-Reporting Analysis

Of all the CVEs published by Advanced Micro Devices Inc. as a CNA, 56.5% affect products that Advanced Micro Devices Inc. develops as a vendor.

56.5%
43.5%
Self-reported: 255 (56.5%)
Third-party: 196 (43.5%)

Of all the CVEs published that affect products developed by Advanced Micro Devices Inc., 85.9% are self-published by Advanced Micro Devices Inc. as a CNA.

85.9%
14.1%
Self-published: 255 (85.9%)
Other CNAs: 42 (14.1%)

Products(1,691 total)

Top CVEs

Signals from CVEs in this vendor scope (297 CVEs).

297 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2026-49121CRITICAL
AI Tensor Engine for ROCm (AITER) through 0.1.14 contains an unauthenticated remote code execution vulnerability in the MessageQueue.recv() function within shm_broadcast.py that al
Jun 1, 20269.839NONO
CVE-2020-6100CRITICAL
An exploitable memory corruption vulnerability exists in AMD atidxx64.dll 26.20.15019.19000 graphics driver. A specially crafted pixel shader can cause memory corruption vulnerabil
Jul 20, 20209.932NONO
CVE-2021-26379CRITICAL
Insufficient input validation of mailbox data in the SMU may allow an attacker to coerce the SMU to corrupt SMRAM, potentially leading to a loss of integrity and privilege escalati
May 9, 20239.831NONO
CVE-2021-26334CRITICAL
The AMDPowerProfiler.sys driver of AMD μProf tool may allow lower privileged users to access MSRs in kernel which may lead to privilege escalation and ring-0 code execution by the
Dec 1, 20219.931NONO
CVE-2020-6103CRITICAL
An exploitable code execution vulnerability exists in the Shader functionality of AMD Radeon DirectX 11 Driver atidxx64.dll 26.20.15019.19000. An attacker can provide a a specially
Jul 20, 20209.931NONO
CVE-2019-5049CRITICAL
An exploitable memory corruption vulnerability exists in AMD ATIDXX64.DLL driver, versions 25.20.15031.5004 and 25.20.15031.9002. A specially crafted pixel shader can cause an out-
Oct 31, 201910.031NONO
CVE-2023-20591CRITICAL
Improper re-initialization of IOMMU during the DRTM event may permit an untrusted platform configuration to persist, allowing an attacker to read or modify hypervisor memory, poten
Aug 13, 202410.030NONO
CVE-2022-23820CRITICAL
Failure to validate the AMD SMM communication buffer may allow an attacker to corrupt the SMRAM potentially leading to arbitrary code execution.
Nov 14, 20239.830NONO
CVE-2021-46760CRITICAL
A malicious or compromised UApp or ABL can send a malformed system call to the bootloader, which may result in an out-of-bounds memory access that may potentially lead to an attack
May 9, 20239.830NONO
CVE-2024-36333HIGH
A DLL hijacking vulnerability in the AMD Cleanup Utility could allow an attacker to achieve privilege escalation potentially resulting in arbitrary code execution.
May 15, 20267.829NONO
View all 297 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products297 CVEs
44%
44%
10%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local196 (66.0%)
Network85 (28.6%)
Unknown5 (1.7%)
Physical11 (3.7%)
Adjacent Network0 (0.0%)
Attack Complexity
Low264 (88.9%)
High28 (9.4%)
Unknown5 (1.7%)
User Interaction
None280 (94.3%)
Unknown5 (1.7%)
Required12 (4.0%)
Privileges Required
Low183 (61.6%)
High27 (9.1%)
None82 (27.6%)
Unknown5 (1.7%)

Exploit Exposure

Signals from CVEs in this vendor scope (297 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Advanced Micro Devices Inc..

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Advanced Micro Devices Inc. — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Advanced Micro Devices Inc.'s Products

View all 7 CNAs →

Top CWEs