CVE-2026-43598: AMD Instinct MI210
High severity, CVSS 7.7. EPSS: 0.5% chance of exploitation in the next 30 days.
Improper input validation in the AMD ROCm Communication Collectives Library (RCCL) could allow a compromised peer rank or network-adjacent attacker to dereference an attacker-controlled pointer, potentially resulting in remote code execution.
Affected products
- AMD AMD Instinct MI210
- AMD AMD Instinct MI250
- AMD AMD Instinct MI250X
- AMD AMD Instinct MI300A
- AMD AMD Instinct MI300X
- AMD AMD Instinct MI308X
- AMD AMD Instinct MI325X
- AMD AMD Instinct MI350X
- AMD AMD Instinct MI355X
Published 2026-10-06. Last modified 2026-10-07.