CVE-2023-20509: AMD Radeon Pro w6000 Series Graphics Cards

Medium severity, CVSS 5.2. EPSS: 0.1% chance of exploitation in the next 30 days.

An insufficient DRAM address validation in PMFW may allow a privileged attacker to perform a DMA read from an invalid DRAM address to SRAM, potentially resulting in loss of data integrity.

Affected products

  • AMD AMD Radeon Pro w6000 Series Graphics Cards
  • AMD AMD Radeon Pro w7000 Series Graphics Cards
  • AMD AMD Radeon Rx 6000 Series Graphics Cards
  • AMD AMD Radeon Rx 7000 Series Graphics Cards

Published 2024-08-13. Last modified 2026-06-17.