CVE-2024-21962
CVE-2024-21962
Vexday Risk Score
21Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 8.6EPSS 0.1%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
15 May 2026Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Improper Input Validation in the AMD RAID driver could allow an attacker to point to an arbitrary memory location potentially resulting in privilege escalation and arbitrary code execution.
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:A/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H
Affected products
AMD · AMD Athlon™ 3000 Series Mobile Processors with Radeon™ GraphicsAMD · AMD EPYC™ 4004 Series ProcessorsAMD · AMD EPYC™ 4005 Series ProcessorsAMD · AMD EPYC™ Embedded 4005 Series ProcessorsAMD · AMD Ryzen™ 2000 Mobile ProcessorsAMD · AMD Ryzen™ 3000 Series Desktop ProcessorsAMD · AMD Ryzen™ 3000 Series Mobile Processors with Radeon™ GraphicsAMD · AMD Ryzen™ 4000 Series Desktop ProcessorsAMD · AMD Ryzen™ 4000 Series Mobile Processors with Radeon™ GraphicsAMD · AMD Ryzen™ 5000 Series Desktop ProcessorsAMD · AMD Ryzen™ 5000 Series Desktop Processors with Radeon™ GraphicsAMD · AMD Ryzen™ 5000 Series Mobile Processors with Radeon™ GraphicsAMD · AMD Ryzen™ 6000 Series Processors with Radeon™ GraphicsAMD · AMD Ryzen™ 7000 Series Desktop ProcessorsAMD · AMD Ryzen™ 7020 Series Processors with Radeon™ GraphicsAMD · AMD Ryzen™ 7040 Series Mobile Processors with Radeon™ GraphicsAMD · AMD Ryzen™ 7045 Series Mobile Processors with Radeon™ GraphicsAMD · AMD Ryzen™ 8000 Series Desktop ProcessorsAMD · AMD Ryzen™ 8040 Series Mobile Processors with Radeon™ GraphicsAMD · AMD Ryzen™ 9000HX Series ProcessorsAMD · AMD Ryzen™ 9000 Series Desktop ProcessorsAMD · AMD Ryzen™ AI 300 Series ProcessorsAMD · AMD Ryzen™ AI Max 300 Series ProcessorsAMD · AMD Ryzen™ Threadripper™ 7000 WX-Series ProcessorsAMD · AMD Ryzen™ Threadripper™ 9000 SeriesAMD · AMD Ryzen™ Threadripper™ PRO 3000 WX-Series ProcessorsAMD · AMD Ryzen™ Threadripper™ PRO 5000 WX-Series ProcessorsAMD · AMD Ryzen™ Z2 Series ProcessorsWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →