CVE-2024-21949

I

mproper validation of user input in the NPU driver could allow an attacker to provide a buffer with unexpected size, potentially leading to system crash.

Configurations

Configuration 1 (hide)

cpe:2.3:a:amd:ryzen_ai_software:*:*:*:*:*:*:*:*

History

15 Nov 2024, 19:20

Type Values Removed Values Added
First Time Amd
Amd ryzen Ai Software
CWE NVD-CWE-noinfo
CPE cpe:2.3:a:amd:ryzen_ai_software:*:*:*:*:*:*:*:*
References () https://www.amd.com/en/resources/product-security/bulletin/amd-sb-7017.html - () https://www.amd.com/en/resources/product-security/bulletin/amd-sb-7017.html - Vendor Advisory

13 Nov 2024, 17:01

Type Values Removed Values Added
Summary
  • (es) La validación incorrecta de la entrada del usuario en el controlador NPU podría permitir que un atacante proporcione un búfer con un tamaño inesperado, lo que podría provocar un bloqueo del sistema.

12 Nov 2024, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-11-12 18:15

Updated : 2024-11-15 19:20


NVD link : CVE-2024-21949

Mitre link : CVE-2024-21949

CVE.ORG link : CVE-2024-21949


JSON object : View

Products Affected
CWE
NVD-CWE-noinfo CWE-20

Improper Input Validation