Use of an uninitialized variable in the ASP could allow an attacker to access leftover data from a trusted execution environment (TEE) driver, potentially leading to loss of confidentiality.
History

Mon, 08 Sep 2025 20:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Mon, 08 Sep 2025 15:30:00 +0000

Type Values Removed Values Added
First Time appeared Amd
Amd instinct Mi210
Amd instinct Mi250
Amd radeon Pro V710
Amd radeon Pro W7000
Amd radeon Rx 7000
Amd ryzen 4000
Amd ryzen 5000
Amd ryzen 6000
Vendors & Products Amd
Amd instinct Mi210
Amd instinct Mi250
Amd radeon Pro V710
Amd radeon Pro W7000
Amd radeon Rx 7000
Amd ryzen 4000
Amd ryzen 5000
Amd ryzen 6000

Sat, 06 Sep 2025 17:00:00 +0000

Type Values Removed Values Added
Description Use of an uninitialized variable in the ASP could allow an attacker to access leftover data from a trusted execution environment (TEE) driver, potentially leading to loss of confidentiality.
Weaknesses CWE-457
References
Metrics cvssV3_1

{'score': 2.8, 'vector': 'CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:L/I:N/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: AMD

Published: 2025-09-06T16:48:43.991Z

Updated: 2025-09-08T20:04:43.607Z

Reserved: 2023-04-27T15:25:41.424Z

Link: CVE-2023-31326

cve-icon Vulnrichment

Updated: 2025-09-08T20:04:40.259Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-09-06T17:15:31.527

Modified: 2025-09-08T16:25:38.810

Link: CVE-2023-31326

cve-icon Redhat

No data.