CVE-2025-48502: AMD Uprof

Medium severity, CVSS 5.5. EPSS: 0.1% chance of exploitation in the next 30 days.

Improper input validation within AMD uprof can allow a local attacker to overwrite MSR registers, potentially resulting in crash or denial of service.

Affected products

  • AMD Uprof: before 5.0.1174 (fixed in 5.0.1174); before 5.0.1223 (fixed in 5.0.1223); before 5.0.1479 (fixed in 5.0.1479)

Published 2025-11-21. Last modified 2026-10-08.