An improper input validation vulnerability within the AMD Platform Management Framework (PMF) Driver can allow a local attacker to write Out-of-Bounds, potentially resulting in privilege escalation.

Project Subscriptions

Vendors Products
Ryzen 6000 Series Processors With Radeon Graphics Subscribe
Ryzen 7035 Series Processors With Radeon Graphics Subscribe
Ryzen 7040 Series Mobile Processors With Radeon Graphics Subscribe
Ryzen 8040 Series Mobile Processors With Radeon Graphics Subscribe
Ryzen Embedded 8000 Series Processors Subscribe
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Wed, 03 Jun 2026 02:30:00 +0000

Type Values Removed Values Added
First Time appeared Amd
Amd ryzen 6000 Series Processors With Radeon Graphics
Amd ryzen 7035 Series Processors With Radeon Graphics
Amd ryzen 7040 Series Mobile Processors With Radeon Graphics
Amd ryzen 8040 Series Mobile Processors With Radeon Graphics
Amd ryzen Embedded 8000 Series Processors
Vendors & Products Amd
Amd ryzen 6000 Series Processors With Radeon Graphics
Amd ryzen 7035 Series Processors With Radeon Graphics
Amd ryzen 7040 Series Mobile Processors With Radeon Graphics
Amd ryzen 8040 Series Mobile Processors With Radeon Graphics
Amd ryzen Embedded 8000 Series Processors

Fri, 15 May 2026 15:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 15 May 2026 04:15:00 +0000

Type Values Removed Values Added
Title Out‑Of‑Bounds Write in AMD PMF Driver Enables Local Privilege Escalation

Fri, 15 May 2026 02:00:00 +0000

Type Values Removed Values Added
Description An improper input validation vulnerability within the AMD Platform Management Framework (PMF) Driver can allow a local attacker to write Out-of-Bounds, potentially resulting in privilege escalation.
Weaknesses CWE-787
References
Metrics cvssV4_0

{'score': 8.5, 'vector': 'CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: AMD

Published:

Updated: 2026-05-16T03:56:07.368Z

Reserved: 2025-06-17T16:53:10.413Z

Link: CVE-2025-52540

cve-icon Vulnrichment

Updated: 2026-05-15T13:30:34.127Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-05-15T02:16:23.280

Modified: 2026-05-15T14:10:17.083

Link: CVE-2025-52540

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-06-02T20:56:17Z

Weaknesses