CVE-2023-31316 - CVE House
Back to Database
Status published High CVE-2023-31316

Improperly preserved integrity of hardware configuration state during a power...

Vulnerability Description

Improperly preserved integrity of hardware configuration state during a power save/restore operation in the AMD Secure Processor (ASP) could allow an attacker with the ability to write outside the trusted memory range (TMR) to change the execution flow of the Video Core Next (VCN) firmware potentially impacting confidentiality, integrity, or availability.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2023-31316

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

AMD Ryzen™ 5000 Series Mobile Processors with Radeon™ Graphics, AMD Ryzen™ 7000 Series Desktop Processors, AMD Ryzen™ 4000 Series Desktop Processors, AMD Ryzen™ 5000 Series Desktop Processors with Radeon™ Graphics, AMD Ryzen™ 7040 Series Mobile Processors with Radeon™ Graphics, AMD Ryzen™ 4000 Series Mobile Processors with Radeon™ Graphics, AMD Ryzen™ 6000 Series Processors with Radeon™ Graphics, AMD Ryzen™ 7020 Series Processors with Radeon™ Graphics, AMD Ryzen™ 7045 Series Mobile Processors with Radeon™ Graphics, AMD Ryzen™ Embedded V2000 Series Processors, AMD Ryzen™ Embedded V3000 Series Processors, AMD Radeon™ RX 6000 Series Graphics Products, AMD Radeon™ RX 7000 Series Graphics Products, AMD Radeon™ PRO W7000 Series Graphics Products, AMD Radeon™ PRO W6000 Series Graphics Products, AMD Instinct™ MI250, AMD Instinct™ MI210, AMD Radeon™ PRO V620
Vulnerable Versions:
Cezanne-FP6 1.0.1.0, ComboAM5PI 1.0.0.a, ComboAM4v2 1.2.0.Ca, PhoenixPI-FP8-FP7_1.1.0.0, Renoir-FP6 1.0.0.D, Rembrandt-FP7 1.0.0.A, MendocinoPI-FT6_1.0.0.6, DragonRangeFL1PI 1.0.0.3C, EmbeddedPI-FP6_1.0.0.9, Embedded-PI_FP7r2 1009, AMD Software: Adrenalin Edition 25.12.1 (25.10.37.01), AMD Software: Adrenalin Edition 25.11.1 (25.20.29.01), AMD Software: PRO Edition 25.Q3.1 (25.10.32), AMD Software: PRO Edition 25.Q4 (25.10.37.01), ROCm 6.4, Contact your AMD Customer Engineering representative

Timeline

Official Publish: May 15th, 2026
Last Modified: May 15th, 2026
Added to House: July 22nd, 2026

CVSS Vectors

Weaknesses (CWE)

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.