CVE-2023-31313: AMD Instinct MI210

High severity, CVSS 7.2. EPSS: 0.1% chance of exploitation in the next 30 days.

An unintended proxy or intermediary in the AMD power management firmware (PMFW) could allow a privileged attacker to send malformed messages to the system management unit (SMU) potentially resulting in arbitrary code execution.

Affected products

  • AMD AMD Instinct MI210
  • AMD AMD Instinct MI250

Published 2026-02-12. Last modified 2026-06-17.