CVE-2023-31316
Improperly preserved integrity of hardware configuration state during a power save/restore operation in the AMD Secure Processor (ASP) could allow an attacker with the ability to write outside the trusted memory range (TMR) to change the execution flow of the Video Core Next (VCN) firmware potentially impacting confidentiality, integrity, or availability.
Scoring
- Severity
- HIGH
- CVSS base score
- 7.1
- CVSS vector
- CVSS:4.0/AV:L/AC:H/AT:P/PR:L/UI:N/VC:L/VI:H/VA:L/SC:L/SI:H/SA:L
- EPSS probability
- 0.10%
- CWE
- CWE-1304
- Published
- 2026-05-15
- Last modified
- 2026-05-15
Affected products
- AMD AMD Ryzen™ 5000 Series Mobile Processors with Radeon™ Graphics
- AMD AMD Ryzen™ 7000 Series Desktop Processors
- AMD AMD Ryzen™ 4000 Series Desktop Processors
- AMD AMD Ryzen™ 5000 Series Desktop Processors with Radeon™ Graphics
- AMD AMD Ryzen™ 7040 Series Mobile Processors with Radeon™ Graphics
- AMD AMD Ryzen™ 4000 Series Mobile Processors with Radeon™ Graphics
- AMD AMD Ryzen™ 6000 Series Processors with Radeon™ Graphics
- AMD AMD Ryzen™ 7020 Series Processors with Radeon™ Graphics
Weakness type
Related vulnerabilities
- CVE-2024-23485 — Improperly Preserved Integrity of Hardware Configuration State During a Power Save/Restore...