CVE-2023-31348
13.08.2024, 17:15
A DLL hijacking vulnerability in AMD Prof could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution.Enginsight
Vendor | Product | Version |
---|---|---|
amd | uprof | 𝑥 < 4.1.424 |
amd | uprof | 𝑥 < 4.2.816 |
amd | uprof | 𝑥 < 4.2.845 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
- CWE-427 - Uncontrolled Search Path ElementThe product uses a fixed or controlled search path to find resources, but one or more locations in that path can be under the control of unintended actors.
- CWE-400 - Uncontrolled Resource ConsumptionThe software does not properly control the allocation and maintenance of a limited resource, thereby enabling an actor to influence the amount of resources consumed, eventually leading to the exhaustion of available resources.