CVE-2023-31348

A DLL hijacking vulnerability in AMD μProf could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:amd:uprof:*:*:*:*:*:linux:*:*
cpe:2.3:a:amd:uprof:*:*:*:*:*:freebsd:*:*
cpe:2.3:a:amd:uprof:*:*:*:*:*:windows:*:*

History

12 Dec 2024, 01:21

Type Values Removed Values Added
Summary (en) A DLL hijacking vulnerability in AMD ?Prof could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution. (en) A DLL hijacking vulnerability in AMD μProf could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution.

03 Dec 2024, 18:46

Type Values Removed Values Added
CWE CWE-427
References () https://www.amd.com/en/corporate/product-security/bulletin/amd-sb-9001 - () https://www.amd.com/en/corporate/product-security/bulletin/amd-sb-9001 - Vendor Advisory
CPE cpe:2.3:a:amd:uprof:*:*:*:*:*:freebsd:*:*
cpe:2.3:a:amd:uprof:*:*:*:*:*:linux:*:*
cpe:2.3:a:amd:uprof:*:*:*:*:*:windows:*:*
Summary (en) A DLL hijacking vulnerability in AMD μProf could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution. (en) A DLL hijacking vulnerability in AMD ?Prof could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution.
First Time Amd
Amd uprof

14 Aug 2024, 15:35

Type Values Removed Values Added
CWE CWE-400

14 Aug 2024, 15:15

Type Values Removed Values Added
Summary
  • (es) Una vulnerabilidad de secuestro de DLL en AMD ?Prof podría permitir a un atacante lograr una escalada de privilegios, lo que potencialmente podría resultar en la ejecución de código arbitrario.
Summary (en) A DLL hijacking vulnerability in AMD ?Prof could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution. (en) A DLL hijacking vulnerability in AMD μProf could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution.

14 Aug 2024, 02:07

Type Values Removed Values Added
Summary (en) A DLL hijacking vulnerability in AMD μProf could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution. (en) A DLL hijacking vulnerability in AMD ?Prof could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution.

13 Aug 2024, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-08-13 17:15

Updated : 2024-12-12 01:21


NVD link : CVE-2023-31348

Mitre link : CVE-2023-31348

CVE.ORG link : CVE-2023-31348


JSON object : View

Products Affected

amd

  • uprof
CWE
CWE-427

Uncontrolled Search Path Element

CWE-400

Uncontrolled Resource Consumption