Bulletin ID: AMD-SB-1052
Potential Impact: Privilege Escalation
Severity: High
Summary
AMD Ryzen™ Master is a software tool that gives users advanced, real-time control of system performance. AMD Ryzen™ Master allows the user to control various clock and voltage settings in real time.
CVE-2022-27677
Failure to validate privileges during installation of AMD Ryzen™ Master may allow an attacker with low privileges to modify files potentially leading to privilege escalation and code execution by the lower privileged user.
Affected Products
AMD Ryzen™ Master
Mitigation
AMD recommends updating AMD Ryzen™ Master to the following version(s):
Acknowledgement
AMD thanks Conor McNamara for reporting this issue and engaging in coordinated vulnerability disclosure.
Revisions
Revision Date | Description |
02/14/2023 | Initial publication |