CVE-2023-31324 - CVE House
Back to Database
Status published High CVE-2023-31324

A Time-of-check time-of-use (TOCTOU) race condition in the AMD Secure...

Vulnerability Description

A Time-of-check time-of-use (TOCTOU) race condition in the AMD Secure Processor (ASP) could allow an attacker to modify External Global Memory Interconnect Trusted Agent (XGMI TA) commands as they are processed potentially resulting in loss of confidentiality, integrity, or availability.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2023-31324

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

AMD Radeon™ RX 5000 Series Graphics Products, AMD Radeon™ PRO W5000 Series Graphics Products, AMD Instinct™ MI210, AMD Instinct™ MI250, AMD Instinct™ MI300A, AMD Instinct™ MI300X
Vulnerable Versions:
AMD Software: Adrenalin Edition 25.6.1 (25.10.13.01), AMD Software: PRO Edition 25.Q2 (25.10.10), ROCm 6.4

Timeline

Official Publish: February 11th, 2026
Last Modified: February 11th, 2026
Added to House: July 22nd, 2026

CVSS Vectors

Weaknesses (CWE)