CVE-2025-66660
CVE-2025-66660
Vexday Risk Score
8Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 1.8EPSS 0.1%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
15 May 2026Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Insufficient parameter sanitization in TEE SOC Driver could allow an attacker to issue a malformed DRV_SOC_CMD_ID_SRIOV_CHECK_TA_COMPAT to cause incorrect shared memory mapping, potentially resulting in unexpected behavior.
CVSS:4.0/AV:L/AC:H/AT:P/PR:H/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N
Affected products
AMD · AMD Instinct™ MI210AMD · AMD Instinct™ MI250AMD · AMD Instinct™ MI300AAMD · AMD Instinct™ MI300XAMD · AMD Instinct™ MI308XAMD · AMD Instinct™ MI325XAMD · AMD Radeon™ PRO V620AMD · AMD Radeon™ PRO V710AMD · AMD Radeon™ PRO W6000 Series Graphics ProductsAMD · AMD Radeon™ PRO W7000 Series Graphics ProductsAMD · AMD Radeon™ RX 6000 Series Graphics ProductsAMD · AMD Radeon™ RX 7000 Series Graphics ProductsWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →