Insufficient parameter sanitization in AMD Secure Processor (ASP) TEE SOC Driver could allow an attacker to issue a malformed DRV_SOC_CMD_ID_LOAD_GFX_IP_FW SR-IOV command to cause out-of-bounds read, potentially resulting in SOC Driver memory contents exposure or an exception
Metrics
Affected Vendors & Products
References
History
Sun, 17 May 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Amd
Amd instinct Mi210 Amd instinct Mi250 Amd instinct Mi300a Amd instinct Mi300x Amd instinct Mi308x Amd instinct Mi325x Amd radeon Pro V520 Amd radeon Pro V620 Amd radeon Pro V710 Amd radeon Pro W6000 Series Amd radeon Pro W7000 Series Amd radeon Rx 6000 Series Amd radeon Rx 7000 Series |
|
| Vendors & Products |
Amd
Amd instinct Mi210 Amd instinct Mi250 Amd instinct Mi300a Amd instinct Mi300x Amd instinct Mi308x Amd instinct Mi325x Amd radeon Pro V520 Amd radeon Pro V620 Amd radeon Pro V710 Amd radeon Pro W6000 Series Amd radeon Pro W7000 Series Amd radeon Rx 6000 Series Amd radeon Rx 7000 Series |
Fri, 15 May 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 15 May 2026 03:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Insufficient parameter sanitization in AMD Secure Processor (ASP) TEE SOC Driver could allow an attacker to issue a malformed DRV_SOC_CMD_ID_LOAD_GFX_IP_FW SR-IOV command to cause out-of-bounds read, potentially resulting in SOC Driver memory contents exposure or an exception | |
| Weaknesses | CWE-125 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: AMD
Published: 2026-05-15T02:41:56.659Z
Updated: 2026-05-15T16:31:27.722Z
Reserved: 2025-12-06T15:03:58.971Z
Link: CVE-2025-66664
Updated: 2026-05-15T16:30:41.817Z
Status : Awaiting Analysis
Published: 2026-05-15T03:16:22.747
Modified: 2026-05-15T14:10:17.083
Link: CVE-2025-66664
No data.