# CVE-2024-36319

## Summary

- **CVE ID:** CVE-2024-36319
- **Severity:** MEDIUM
- **CVSS Score:** 6.3 (CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:H/SI:H/SA:H)
- **CWE:** CWE-1191
- **Published:** Feb 12, 2026
- **Last Modified:** Mar 13, 2026

## Description

Debug code left active in AMD's Video Decoder Engine Firmware (VCN FW) could allow a attacker to submit a maliciously crafted command causing the VCN FW to perform read/writes HW registers, potentially impacting confidentiality, integrity and availabilability of the system.

## Affected Products

- AMD — AMD Ryzen™ 7040 Series Mobile Processors with Radeon™ Graphics;
AMD Ryzen™ 8040 Series Mobile Processors with Radeon™ Graphics (AMD Software: Adrenalin Edition 25.5.1, AMD Software: PRO Edition 25.Q2)
- AMD — AMD Ryzen™ AI MAX Series Processors (AMD Software: Adrenalin Edition 25.5.1, AMD Software: PRO Edition 25.Q2)
- AMD — AMD Ryzen™ AI 300 Series Processors (AMD Software: Adrenalin Edition 25.5.1, AMD Software: PRO Edition 25.Q2)
- AMD — AMD Ryzen™ 8000 Series Desktop Processors (AMD Software: Adrenalin Edition 25.5.1, AMD Software: PRO Edition 25.Q2)
- AMD — AMD Ryzen™ Embedded 8000 Series Processors (Q2 - 2025 AMD Embedded Ryzen[7000 8000 9000] Windows® Catalyst™ driver [25.6.1] (68926))
- AMD — AMD Ryzen™ Embedded 7000 Series Processors (Q2 - 2025 AMD Embedded Ryzen[7000 8000 9000] Windows® Catalyst™ driver [25.6.1] (68926))
- AMD — AMD Ryzen™ Embedded 9000 Series Processors (Q2 - 2025 AMD Embedded Ryzen[7000 8000 9000] Windows® Catalyst™ driver [25.6.1] (68926))
- AMD — AMD Radeon™ RX 7000 Series Graphics Products (25.5.1 (25.10.01.09), AMD Software: PRO Edition 25.Q2(25.10.10), Radeon Software For Linux 25.10.1)
- AMD — AMD Radeon™ PRO W7000 Series Graphics Products (25.5.1 (25.10.01.09), AMD Software: PRO Edition 25.Q2(25.10.10), Radeon Software For Linux 25.10.1)
- AMD — AMD Instinct™ MI300X (ROCm 6.2.4)
- AMD — AMD Instinct™ MI300A (ROCm 6.2.4)
- AMD — AMD Instinct™ MI308X (ROCm 6.2.4)
- AMD — AMD Instinct™ MI325X (ROCm 6.2.4)
- AMD — AMD Radeon™ PRO V710 (Contact your AMD Customer Engineering representative)

## References

- [CNA](https://www.amd.com/en/resources/product-security/bulletin/AMD-SB-6024.html)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.13%
- **EPSS Percentile:** 2.9

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-10._