AMD Radeon Software may be vulnerable to DLL Hijacking through path variable. An unprivileged user may be able to drop its malicious DLL file in any location which is in path environment variable.
References
Link | Resource |
---|---|
https://www.amd.com/en/corporate/product-security/bulletin/amd-sb-1000 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2022-02-04 23:15
Updated : 2024-02-28 18:48
NVD link : CVE-2020-12891
Mitre link : CVE-2020-12891
CVE.ORG link : CVE-2020-12891
JSON object : View
Products Affected
amd
- radeon_pro_software
- radeon_software
CWE
CWE-427
Uncontrolled Search Path Element