CVE-2024-36342 - CVE House
Back to Database
Status published High CVE-2024-36342

Improper input validation in the GPU driver could allow an...

Vulnerability Description

Improper input validation in the GPU driver could allow an attacker to exploit a heap overflow potentially resulting in arbitrary code execution.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-36342

Credits & Attribution

The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:

  • Reported through AMD Bug Bounty Program

Affected Vendor

Affected Software

AMD Ryzen™ 4000 Series Mobile Processors with Radeon™ Graphics, AMD Ryzen™ 7035 Series Processors with Radeon™ Graphics, AMD Athlon™ 3000 Series Mobile Processors with Radeon™ Graphics, AMD Ryzen™ 7040 Series Mobile Processors with Radeon™ Graphics, AMD Ryzen™ 7020 Series Processors with Radeon™ Graphics, AMD Ryzen™ 7045 Series Mobile Processors with Radeon™ Graphics, AMD Ryzen™ 7000 Series Desktop Processors, AMD Ryzen™ 7030 Series Mobile Processors with Radeon™ Graphics, AMD Ryzen™ AI 300 Series Processors, AMD Athlon™ 3000 Series Desktop Processors with Radeon™ Graphics, AMD Ryzen™ 8000 Series Desktop Processors, AMD Ryzen™ 9000 Series Desktop Processors, AMD Ryzen™ 5000 Series Mobile Processors with Radeon™ Graphics, AMD Ryzen™ 4000 Series Desktop Processors, AMD Ryzen™ 5000 Series Desktop Processors with Radeon™ Graphics, AMD Ryzen™ 8040 Series Mobile Processors with Radeon™ Graphics, AMD Ryzen™ 3000 Series Mobile Processors with Radeon™ Graphics, AMD Ryzen™ 6000 Series Processors with Radeon™ Graphics, AMD Ryzen™ Embedded R2000 Series Processors, AMD Ryzen™ Embedded V2000 Series Processors, AMD Ryzen™ Embedded 8000 Series, AMD Ryzen™ Embedded 7000 Series Processors, AMD Radeon™ RX 5000 Series Graphics Products, AMD Radeon™ PRO W5000 Series Graphics Products, AMD Radeon™ RX 6000 Series Graphics Products, AMD Radeon™ PRO W6000 Series Graphics Products, AMD Radeon™ RX 7000 Series Graphics Products, AMD Radeon™ PRO W7000 Series Graphics Products, AMD Radeon™ RX 9000 Series Graphics Products, AMD Radeon™ RX Vega Series Graphics Cards, AMD Radeon™ PRO VII, AMD Instinct™ MI210, AMD Instinct™ MI250, AMD Instinct™ MI300A, AMD Instinct™ MI300X, AMD Instinct™ MI308X, AMD Instinct™ MI325X, AMD Radeon™ PRO V520 Graphics Products, AMD Radeon™ PRO V620 Graphics Products, AMD Radeon™ PRO V710 Graphics Products
Vulnerable Versions:
Radeon Software for Linux 25.10.x, amd_chipset_software_7.06.02.123.exe , PSP driver version: 5.39.0.0, Radeon Software for Linux 25.10.1, ROCm 6.4, Contact your AMD Customer Engineering representative

Timeline

Official Publish: September 6th, 2025
Last Modified: February 26th, 2026
Added to House: July 22nd, 2026

CVSS Vectors

V3: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

Weaknesses (CWE)

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.