CVE-2025-48510

I

mproper return value within AMD uProf can allow a local attacker to bypass KSLR, potentially resulting in loss of confidentiality or availability.

References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:amd:uprof:*:*:*:*:*:windows:*:*
cpe:2.3:a:amd:uprof:*:*:*:*:*:freebsd:*:*
cpe:2.3:a:amd:uprof:*:*:*:*:*:linux:*:*

History

26 Nov 2025, 18:47

Type Values Removed Values Added
References () https://www.amd.com/en/resources/product-security/bulletin/AMD-SB-9019.html - () https://www.amd.com/en/resources/product-security/bulletin/AMD-SB-9019.html - Mitigation, Vendor Advisory
CPE cpe:2.3:a:amd:uprof:*:*:*:*:*:freebsd:*:*
cpe:2.3:a:amd:uprof:*:*:*:*:*:linux:*:*
cpe:2.3:a:amd:uprof:*:*:*:*:*:windows:*:*
First Time Amd
Amd uprof

24 Nov 2025, 21:16

Type Values Removed Values Added
New CVE

Information

Published : 2025-11-24 21:16

Updated : 2025-11-26 18:47


NVD link : CVE-2025-48510

Mitre link : CVE-2025-48510

CVE.ORG link : CVE-2025-48510


JSON object : View

Products Affected
CWE
CWE-394

Unexpected Status Code or Return Value