CVE-2024-36311: AMD Ryzen 7000 Series Desktop Processors

Medium severity, CVSS 4.6. EPSS: 0.1% chance of exploitation in the next 30 days.

A Time-of-check time-of-use (TOCTOU) race condition in the SMM communications buffer could allow a privileged attacker to bypass input validation and perform an out of bounds read or write, potentially resulting in loss of confidentiality, integrity, or availability.

Affected products

  • AMD AMD Ryzen 7000 Series Desktop Processors
  • AMD AMD Ryzen 7045 Series Mobile Processors With Radeon Graphics
  • AMD AMD Ryzen 8000 Series Desktop Processors
  • AMD AMD Ryzen 9000 Series Desktop Processors
  • AMD AMD Ryzen 9000hx Series Mobile Processors
  • AMD AMD Ryzen Embedded 7000 Series Processors

Published 2026-02-10. Last modified 2026-06-17.