CVE-2024-36311: AMD Ryzen 7000 Series Desktop Processors
Medium severity, CVSS 4.6. EPSS: 0.1% chance of exploitation in the next 30 days.
A Time-of-check time-of-use (TOCTOU) race condition in the SMM communications buffer could allow a privileged attacker to bypass input validation and perform an out of bounds read or write, potentially resulting in loss of confidentiality, integrity, or availability.
Affected products
- AMD AMD Ryzen 7000 Series Desktop Processors
- AMD AMD Ryzen 7045 Series Mobile Processors With Radeon Graphics
- AMD AMD Ryzen 8000 Series Desktop Processors
- AMD AMD Ryzen 9000 Series Desktop Processors
- AMD AMD Ryzen 9000hx Series Mobile Processors
- AMD AMD Ryzen Embedded 7000 Series Processors
Published 2026-02-10. Last modified 2026-06-17.