CVE-2026-43598: AMD Instinct MI210

High severity, CVSS 7.7. EPSS: 0.5% chance of exploitation in the next 30 days.

Improper input validation in the AMD ROCm Communication Collectives Library (RCCL) could allow a compromised peer rank or network-adjacent attacker to dereference an attacker-controlled pointer, potentially resulting in remote code execution.

Affected products

  • AMD AMD Instinct MI210
  • AMD AMD Instinct MI250
  • AMD AMD Instinct MI250X
  • AMD AMD Instinct MI300A
  • AMD AMD Instinct MI300X
  • AMD AMD Instinct MI308X
  • AMD AMD Instinct MI325X
  • AMD AMD Instinct MI350X
  • AMD AMD Instinct MI355X

Published 2026-10-06. Last modified 2026-10-07.