AMD uProf KSLR Bypass Vulnerability Allowing Confidentiality and Availability Loss

Vulnerability

A vulnerability in AMD uProf has been identified, where an improper return value can enable a local attacker to bypass Kernel Space Layout Randomization (KSLR). This bypass could potentially lead to unauthorized access to sensitive information or disrupt system availability. The vulnerability affects AMD uProf versions 5.0 through 5.2.

Impact

Exploitation of this vulnerability can bypass KSLR, potentially allowing for unauthorized access to confidential information or causing a disruption in system availability.

Remediation

Users can upgrade to AMD uProf version 5.1 or higher to address this vulnerability.

Added: Nov 24, 2025, 9:19 PM
Updated: Nov 24, 2025, 9:19 PM

Vulnerability Rating

Custom Algorithm
spread
2.4
impact
5.0
exploitability
2.7
remediation
7.7
relevance
1.1
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.