A Time-of-check time-of-use (TOCTOU) race condition in the SMM communications buffer could allow a privileged attacker to bypass input validation and perform an out of bounds read or write, potentially resulting in loss of confidentiality, integrity, or availability.
Metrics
Affected Vendors & Products
References
History
Thu, 12 Feb 2026 11:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Amd
Amd ryzen 5000 Series Desktop Processors Amd ryzen 7000 Series Desktop Processors Amd ryzen 7040 Series Mobile Processors With Radeon Graphics Amd ryzen 9000hx Series Mobile Processors Amd ryzen Embedded 7000 Series Processors |
|
| Vendors & Products |
Amd
Amd ryzen 5000 Series Desktop Processors Amd ryzen 7000 Series Desktop Processors Amd ryzen 7040 Series Mobile Processors With Radeon Graphics Amd ryzen 9000hx Series Mobile Processors Amd ryzen Embedded 7000 Series Processors |
Tue, 10 Feb 2026 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 10 Feb 2026 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A Time-of-check time-of-use (TOCTOU) race condition in the SMM communications buffer could allow a privileged attacker to bypass input validation and perform an out of bounds read or write, potentially resulting in loss of confidentiality, integrity, or availability. | |
| Weaknesses | CWE-367 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: AMD
Published:
Updated: 2026-02-10T20:43:15.862Z
Reserved: 2024-05-23T19:44:32.296Z
Link: CVE-2024-36311
Updated: 2026-02-10T20:43:04.597Z
Status : Awaiting Analysis
Published: 2026-02-10T20:16:42.687
Modified: 2026-02-10T21:51:48.077
Link: CVE-2024-36311
No data.