CVE-2024-36340: AMD Uprof
Medium severity, CVSS 6.6. EPSS: 0.2% chance of exploitation in the next 30 days.
A junction point vulnerability within AMD uProf can allow a local low-privileged attacker to create junction points, potentially resulting in arbitrary file deletion or disclosure.
Affected products
- AMD Uprof: before 5.0.1174 (fixed in 5.0.1174); before 5.0.1223 (fixed in 5.0.1223); before 5.0.1479 (fixed in 5.0.1479)
Published 2025-05-13. Last modified 2026-06-17.