CVE-2024-21949

Improper validation of user input in the NPU driver could allow an attacker to provide a buffer with unexpected size, potentially leading to system crash.
Configurations

Configuration 1 (hide)

cpe:2.3:a:amd:ryzen_ai_software:*:*:*:*:*:*:*:*

History

15 Nov 2024, 19:20

Type Values Removed Values Added
First Time Amd ryzen Ai Software
Amd
CPE cpe:2.3:a:amd:ryzen_ai_software:*:*:*:*:*:*:*:*
References () https://www.amd.com/en/resources/product-security/bulletin/amd-sb-7017.html - () https://www.amd.com/en/resources/product-security/bulletin/amd-sb-7017.html - Vendor Advisory
CWE NVD-CWE-noinfo

13 Nov 2024, 17:01

Type Values Removed Values Added
Summary
  • (es) La validación incorrecta de la entrada del usuario en el controlador NPU podría permitir que un atacante proporcione un búfer con un tamaño inesperado, lo que podría provocar un bloqueo del sistema.

12 Nov 2024, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-11-12 18:15

Updated : 2024-11-15 19:20


NVD link : CVE-2024-21949

Mitre link : CVE-2024-21949

CVE.ORG link : CVE-2024-21949


JSON object : View

Products Affected

amd

  • ryzen_ai_software
CWE
NVD-CWE-noinfo CWE-20

Improper Input Validation