Database/Control plane, storage & DevOps
AMD Radeon Graphics display driver - input validation: Improper input validation in the Radeon display driver lets
CVSS 7.5CVE-2023-31320Control plane, storage & DevOpscurated
Impact
Improper input validation in the Radeon display driver lets an attacker corrupt the display and deny service. On headless datacenter Instinct nodes the display pipeline is barely exercised, so real exposure is low - included for completeness of the AMD GPU driver picture rather than because it should move up your queue.
Who can reach it
Local, via the display driver path. Effectively inert on headless compute nodes.
What to do
Update the AMD graphics driver and reload or reboot. Low priority on headless GPU fleets.
References
Related entries
- ZKTeco BioTime v8.5.5 (iclock API path traversal): Unauthenticated arbitrary file read on the BioTime serverCVE-2023-38950 · ZKTeco BioTime v8.5.5 (iclock API path traversal)High
- KNX devices using KNX Connection Authorization Option 1 (BCU key): An attacker sets the BCU key on KNX devicesCVE-2023-4346 · KNX devices using KNX Connection Authorization Option 1 (BCU key)High
- Johnson Controls Metasys NAE55 / SNE / SNC network engines and Facility Explorer F4-SNC (before 11.0.6 / 12.0.4)CVE-2023-4486 · Johnson Controls Metasys NAE55 / SNE / SNC network engines and Facility Explorer F4-SNC (before 11.0.6 / 12.0.4)High
- OpenZFS: Block-cloning path can replace file contents with zero bytes, potentially disabling security mechanismsCVE-2023-49298 · OpenZFSHigh
- Slurm (NULL pointer dereference in RPC handling): A crafted message crashes the Slurm daemon. On slurmctld that stallsCVE-2023-49936 · Slurm (NULL pointer dereference in RPC handling)High
- HPE OneView (clusterService authentication bypass to DoS): Authentication bypass against the OneView cluster serviceCVE-2023-50275 · HPE OneView (clusterService authentication bypass to DoS)High
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.