AMD GPIO Privilege Escalation Vulnerability Allowing Arbitrary Code Execution

Vulnerability

A vulnerability exists in the AMD general-purpose input/output controller (GPIO) due to incorrect default permissions in the installation directory. This flaw could enable an attacker to escalate privileges, leading to arbitrary code execution.

Impact

Exploitation of this vulnerability could result in unauthorized privilege escalation and arbitrary code execution on the affected system.

Remediation

Users are advised to update to the AMD Ryzen Chipset Driver version 7.04.09.545, released on April 22, 2025. For AMD EPYC 8004 and 9004 Series Processors, the recommended version is AMD Server Software 8.03.16.641, also released on March 24, 2026.

Added: May 15, 2026, 2:47 AM
Updated: May 15, 2026, 2:47 AM

Vulnerability Rating

Custom Algorithm
spread
7.8
impact
2.5
exploitability
2.9
remediation
7.7
relevance
8.2
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.